Inspirational journeys

Follow the stories of academics and their research expeditions

AWS Certified SysOps Administrator - Associate - Part 48

Mary Smith

Wed, 19 Nov 2025

AWS Certified SysOps Administrator - Associate - Part 48

1. A user has received permission to read / write its S3 bucket using ACLs. Which of the options mentioned below is a valid ID to grant permission to other AWS accounts

A) Canon user ID
B) None
C) S3 Secure ID
D) access ID
E) IAM user ID


2. A user has configured a custom application that generates a number of decimal places. The user wishes to take this number and alarm configuration when the number is above a certain limit. The application sends data to Cloud Look at intervals for this purpose. Which of the below mentioned is not true regarding the above scenario?

A) None
B) Cloud Watch not truncate the number until it has a higher exposure to 126 (ie (1 x 10A126).
C) The user must provide the time zone for each data point
D) The user can obtain aggregated data numbers generated over a minute and send Cloud View
E) The user can create a file in JSON format with the name of the extent and value and provide Cloud Watch


3. A user has created a VPC with public and private subnets using the VPC Wizard. The VPC CIDR 20.0.0.0/16. The public subnet using CIDR 20.0.1 .0 / 24. The user is planning to host one in the public subnet web server (port 80 and a DB server in the private subnet (port 3306 .. the user configures a security group for the public subnet (GRP Web Sec. And the private subnet (DB Dry GRP .. Among the entries listed below is required in the Web server security group (Web GRP dry.?

A) Configure DB Destination as a security group ID (GRP Db Sec. For the port 3306Outbound
B) Configure port 3306 for source 20.0.0.0/24 In Bound
C) None
D) Set port 80 to the source 20.0.0.0/16 In Bound
E) 80 Destination Outgoing 0.0.0.0/0


4. A user configures the function Multi AZ RDS DB. The user came to know that RDS DB does not use the AWS technology, but uses mirroring server to achieve HA. DB who the user is using now?

A) MS SQL
B) My SQL
C) Oracle
D) None
E) SQL postgre


5. A user has configured a VPC with CIDR 20.0.0.0/16. The VPC is a private subnet (20.0.1.0/24. And a public subnet (20.0.0.0/24 .. The user's data center and CIDR 20.0.54.0/24 20.1.0.0/ 24. If the private subnet wants to communicate with the data center, what will happen?

A) It will allow communication traffic on both CIDRs data center
B) He will not allow the communication traffic on one of the data centers CIDRs
C) It will allow traffic to central data CIDR 20.1.0.0/24 but does not 20.0.54.0/24
D) None
E) He will not allow traffic to the data center CIDR 20.1.0.0/24 but allows 20.0.54.0/24 on communication traffic


1. Right Answer: A
Explanation: S3 bucket recipient ACL can be an AWS account or one of the predefined groups Amazon S3. The user can grant permission to an AWS account by the email address of the account or the canonical user ID. If the user provides an e-mail to the grant application, Amazon S3 is the user's canonical ID for that account and added to the ACL. The LCD result will always contain the user's canonical ID for the AWS account, not the AWS Account email address.

2. Right Answer: C
Explanation:

3. Right Answer: A
Explanation: A user can create a subnet with the VPC instances and run within that subnet. If the user has created a public-private subnet to respectively host the web server and the DB server, the user must configure the public subnet instances can receive incoming traffic directly from the Internet. Thus, the user must configure port 80 with the source 0.0.0.0/0 In Bound. The user must configure the instance of the subnet public can send traffic to the subnet private bodies on the DB port. Thus, the user must configure the DB Security Group private subnet (Db Sec GRP. As destination port 3306 leaving.

4. Right Answer: A
Explanation: Amazon RDS provides high availability and failover support for DB instances using multiple deployments AZ. In a multi AZ deployment, Amazon RDS automatically provisions and maintains a replica of synchronous standby in another Availability Zone. Multi AZ deployments for Oracle, SQL Postgres and My SQL technology use Amazon DB instances, while SQL Server (MS SQL instances. DB using SQL Server Mirroring.

5. Right Answer: C
Explanation: PCC allows the user to configure a connection between VPC and its corporate or home network data center. If the user has an IP address prefix in the VPC which straddles one of networksà ¬ Ÿ prefixes, all traffic networkà ¬ prefix Ys fell. In this case falls into the CIDR 20.0.54.0/24 VPCA ¬ YS CIDR range 20.0.0.0/1 6. Thus, it will not allow traffic on this intellectual property. For 20.1.0.0/24 ii does not fall into the VPCA ¬ YS CIDR range. Thus, traffic will be allowed on it

0 Comments

Leave a comment