Inspirational journeys

Follow the stories of academics and their research expeditions

AWS Certified SysOps Administrator - Associate - Part 45

Mary Smith

Mon, 09 Feb 2026

AWS Certified SysOps Administrator - Associate - Part 45

1. A user has aggregated the data shows cloud metric on the ID MAI. User observed abnormal behavior of measuring CPU usage when displaying the last 2 weeks of data. The user wishes to share this data with his manager. How the user can be achieved easily with the AWS console?

A) The user can use the Cloud shows data copy function to copy the current data points
B) The user must find the time and the data and provide all the information aggregation manager
C) The user can use the console to export data shows cloud option to export the current data point
D) The user can use the Cloud Watch Copy URL feature to share the exact details
E) None


2. A user has activated versioning S3 bucket. The user uses the server-side encryption for data at rest. If the user provides its own keys for encryption (. SSE-C, statements mentioned below is true?

A) None
B) It is possible to encryption keys for different versions of the same object
C) The user must use the same encryption key for all versions of the same object
D) AWS S3 does not allow the user to download his own keys for encryption server side
E) The ESS-C does not work when versioning is enabled


3. A user on EC2 instances hosted application. EC2 instances are configured with ELB and setting auto scale. The time server application session is 2 hours. The user wants to configure the connection drain to ensure that all flight requests are supported by ELB even if the instance is deleted. What time period in if the user specifies for connecting drain?

A) 30 minutes
B) 1 hour
C) 2 hours
D) None
E) 5 minutes


4. A user tries to create a volume with 4000 IOPS PIOPS EBS and size of 100GB. AWS does not allow the user to create the volume. What is the possible root cause for this?

A) The maximum IOPS supported by EBS 3000
B) The ratio between the volume and IOPS EBS is less than 50
C) PIOPS is supported for BSE than 500 GB Size
D) The ratio between the volume and IOPS EBS is greater than 30
E) None


5. A user has created a VPC with CIDR 20.0.0.0/16 using the wizard. The user has created a public subnet (CIDR 20.0.0.0/24. And VPN subnets (CIDR 20.0.1.0/24. As the VPN gateway (VGW-January 2345 to connect to the data center users. the user data center 172.28.0.0/12 CIDR. the user also has the configuration of an instance (NAT I_I23456. to allow traffic to the Internet from the VPN subnet. Among options mentioned below is not a valid entry for the main table of the road in this scenario?

A) Destination: 172.28.0.0/12 and Target: VGW-January 2345
B) None
C) Destination: 20.0.1.0/24 and Target: I-I 2345
D) Destination: 0.0.0.0/0 and Target: I-I 2345
E) Destination: 20.0.0.0/16 and Target: Local


1. Right Answer: D
Explanation: Amazon Cloud shows provides the functionality to graph the metrics generated either by AWS services or custom metric to make it easier for the user to analyze. The console provides the ability to record the URL or bookmark so that it can be used in the future by typing the same URL. The URL copy feature is available in the console when the user selects a measure to the view.

2. Right Answer: B
Explanation: AWS S3 supports client-side or server side encryption to encrypt all data at rest. The server side encryption can either have the encryption key S3 or AES-256 provided the user can send the key and each API call to provide its own. Encryption Key (SSE-C If the bucket is versioning- enabled, each object version downloaded by the user using the SES-C function can have its own encryption key. User is responsible for monitoring that was the encryption key used for objects that version

3. Right Answer: B
Explanation:

4. Right Answer: D
Explanation: A volume provisioning lops EBS can vary in size from 10 GB to 1 TB and available to the user box up to 4,000 IOPS per volume. The ratio of IOPS provisioned on the volume size requested must be a maximum of 30; for example, a volume of 3000 IOPS must be at least 100 GB.

5. Right Answer: C
Explanation: The user can create subnets per requirement in a VPC. If the user wants to connect VPC's own data center, it can configure a VPN and only public subnet that uses the hardware VPN access to connect with its data center. When the user has configured the setup wizard, it will create a VPN gateway to route any subnet VPN traffic. If the user has configured a NAT instance to route all Internet requests all requests to the Internet should be routed to it. Al asks the organizationà ¬ YS DC will be routed to the VPN gateway. Here are the valid entries for the main routing table in this scenario: Destination: 0.0.0.0/0 & Target :. Ii 2345 (to route all Internet traffic to the NAT instance Location: 172.28.0.0/1 2 & Target: vgw- January 2345 (to route all organizationà ¬ center YS data traffic to the VPN gateway Destination 20.0.0.0/ :. 16 & Target: local (to allow local routing VPC.

0 Comments

Leave a comment