Inspirational journeys

Follow the stories of academics and their research expeditions

AWS Certified SysOps Administrator - Associate - Part 20

Mary Smith

Wed, 16 Jul 2025

AWS Certified SysOps Administrator - Associate - Part 20

1. An organization has configured the metric on download with Cloud Watch. The organization gave permission for employees to download data with type CLI SDK. How the user can track calls Cloud Watch?

A) Create IAM user and allow each user to record data with the S3 bucket
B) None
C) Use Cloud Trail to monitor API calls
D) Enable detailed monitoring shows with Cloud
E) The user can enable logging with Cloud watch that records all activity


2. A client uses AWS Dev and Test. The customer wants to configure the Dev environment with the ion cloud format. Which of the steps mentioned below are not necessary using the cloud formation?

A) None
B) Create and download the template
C) Configure a Service
D) Provide the configured parameters as part of the model
E) Create stack


3. A user has created a photo editing software and hosted on EC2. The software accepts requests from the user on the photo size and resolution and sends a message to S3 to improve the image accordingly. Among AWS services mentioned below will help make a scalable software with the AWS infrastructure in this scenario?

A) None
B) AWS Elastic Trans encoder
C) Simple Notification Service AWS
D) AWS Simple Queue Service of
E) AWS Glacier


4. A user launched a major EBS backed EC2 for example in the US-is-i region. The user wants to achieve disaster recovery (DR. In that instance by creating another small example in Europe. How the user can get CD?

A) Copy the example of the US region to the EU region
B) None
C) Copy running current instance using the à ¬ command Å?Instance Copyà the EU region
D) Create an AMI instance and copy the MAI in the EU region. Then run the instance of the EU FRIEND
E) Use the à ¬ Å?Launch more like this to copy the example of a region to another


5. A user has created a VPC with CIDR 20.0.0.0/16 with only a private subnet and the VPN connection using the VPC Wizard. The user wants to connect to the instance in a private subnet via SSH. How the user must define the security policy for SSH?

A) The user must create an instance in classical EC2 with an elastic IP address and configure the security group to a private subnet to allow SSH this elastic IP
B) The user can connect to an instance in a private subnet using the instance NAT
C) None
D) Allow incoming traffic on port 22 of the user's network
E) Allow incoming traffic on port 80 and 22 to allow the user to connect to a private subnet on the Internet


1. Right Answer: C
Explanation: Trail AWS Cloud is a web service that will allow the user to monitor the de facto API cal Amazon Cloud account scrutinize the organizations, including calls made by the AWS management console, command line interface (CLI. and other services. When cloud Trail Logging is enabled, Looking cloud write log files in Amazon S3 bucket, which is specified when configuring cloud Trail.

2. Right Answer: C
Explanation: AWS Cloud formation is an application management tool that provides an application modeling, deployment, configuration, management and related activities. AWS Cloud Formation has two concepts: the model and battery. The model is a JSONformat text file that describes all the AWS resources needed to deploy and run an application. The stack is a collection of AWS resources that are created and managed as a single unit when training AWS cloud instantiate a model. When creating a stack, the user downloads the model and provides the data for the parameters if necessary.

3. Right Answer: D
Explanation: Amazon Simple Queue (SQS. Is a fast, reliable, scalable and fully managed the on hold message service. SQS offers a simple and cost effective way todecouple components of an application. The user can configure SQS, which decouple the call between the implementation EC2 and S3. Thus, the application does not keep waiting for S3 to provide the data.

4. Right Answer: D
Explanation: To start an EC2 instance it is necessary to have an MAI in this region. If the MAI is not available in this region, and create a new AMI or use the Copy command to copy the MAI from one region to another region.

5. Right Answer: E
Explanation: The user can create subnets per requirement in a VPC. If the user wants to connect VPC's own data center, the user can setup a case that uses a VPN VPN access only subnet (private. To connect with its data center. When the user has configured this configuration with the wizard, all the network connections to the bodies of the subnet will come from its data center. the user must configure the security group of private subnet that allows incoming traffic over SSH (port 22 centers data network range.

0 Comments

Leave a comment