Free AWS-Certified-Advanced-Networking-Specialty Exam Braindumps (page: 31)

Page 31 of 102

Which element of AWS Config can be used to help maintain internal and external compliance controls?

  1. Configuration Item
  2. Configuration Recorder
  3. Configuration Streams
  4. Config Rules

Answer(s): D

Explanation:

AWS Config allows you to utilise Config Rules to help you manage and organise this compliance which acts asan automatic resource compliance checker. When a change is made to a resource, AWS Config will check to see if the resource matches a rule, and if so it will check the compliance of that resource against the rule following the changes made.


Reference:

https://aws.amazon.com/config/



Which AWS service is used within an AWS Config Rule to perform the logic evaluation of that rule?

  1. Inspector
  2. WAF
  3. Lambda
  4. SWF

Answer(s): C

Explanation:

AWS Config Rules are a great way to help you enforce specific compliance controls and checks across your resources and allows for you to adopt an `ideal' deployment specification for each of your resource types. Each Rule is simply a Lambda function that when called upon evaluates the resource and carries out some simply logic to determine the compliance result with the rule.


Reference:

http://docs.aws.amazon.com/config/latest/developerguide/evaluate-config_develop-rules_nodejs-sample.html



AWS Config flags a resource as ____________if a resource violates any conditions of an AWS Config rule that it evaluates on the resource in question.

  1. corrupted
  2. noncompliant
  3. invalid
  4. misconfigured

Answer(s): B

Explanation:

Use AWS Config to evaluate the configuration settings of your AWS resources. You do this by creating AWS Config rules, which represent your ideal configuration settings. AWS Config provides customizable, predefined rules called managed rules to help you get started. You can also create your own custom rules. While AWS Config continuously tracks the configuration changes that occur among your resources, it checks whether these changes violate any of the conditions in your rules. If a resource violates a rule, AWS Config flags the resource and the rule as noncompliant.


Reference:

http://docs.aws.amazon.com/config/latest/developerguide/evaluate-config.html



Each custom AWS Config rule you create must be associated with a(n) AWS __________, which contains the logic that evaluates whether your AWS resources comply with the rule.

  1. Lambda function
  2. Configuration trigger
  3. EC2 instance
  4. S3 bucket

Answer(s): A

Explanation:

You can develop custom AWS Config rules to be evaluated by associating each of them with an AWS Lambda function, which contains the logic that evaluates whether your AWS resources comply with the rule. You associate this function with your rule, and the rule invokes the function either in response to configuration changes or periodically. The function then evaluates whether your resources comply with your rule, and sends its evaluation results to AWS Config.


Reference:

http://docs.aws.amazon.com/config/latest/developerguide/evaluate-config_develop-rules.html



Page 31 of 102



Post your Comments and Discuss Amazon AWS-Certified-Advanced-Networking-Specialty exam with other Community members:

Hello commented on September 04, 2024
awesome questions
Anonymous
upvote

Meenakshi commented on June 06, 2024
One of the best exam dumps site I have ever used. I have passed 3 of my exams with the help of this website.
INDIA
upvote