Free AWS-Certified-Big-Data-Specialty Exam Braindumps (page: 18)

Page 18 of 124

Which statements are true for user-managed preconditions in AWS Data Pipeline? (choose three)

  1. User-managed preconditions only run on the computational resource that you have specified.
  2. You can create, access and manage user-managed preconditions using the AWS Management Console.
  3. You can create, access and manage user-managed preconditions using the AWS Command Line Interface.
  4. You need to install the AWS SDK to manage user-managed preconditions.

Answer(s): A,B,C

Explanation:

AWS Data Pipeline supports two types of preconditions. System-managed preconditions and usermanaged preconditions.
System-managed preconditions are run by the AWS Data Pipeline web service on your behalf do not require a computational resource.
User Managed preconditions only run on the computational resource that you have specified. You can create, access and manage your pipelines using the AWS Management Console.
You can create, access and manage your pipelines use the AWS Command Line Interface. Reference:
http://docs.aws.amazon.com/datapipeline/latest/DeveloperGuide/dp-managingpipeline. html



In Amazon S3, you can protect data in transit (as it travels to and from Amazon S3) by using either client-side encryption or by using .

  1. MFA
  2. SSL
  3. ICMP
  4. ARP

Answer(s): B

Explanation:

Data protection refers to protecting data while in-transit (as it travels to and from Amazon S3) and at rest (while it is stored on disks in Amazon S3 data centers).
You can protect data in transit by using client-side encryption or by using SSL.


Reference:

http://docs.aws.amazon.com/AmazonS3/latest/dev/UsingEncryption.html



How long are the temporary security credentials valid for, if you obtain temporary security credentials using your AWS account credentials in Amazon S3?

  1. 30 Minutes
  2. 1 Hour
  3. 24 Hours
  4. 2 Hours

Answer(s): B

Explanation:

An AWS account or an IAM user can request the temporary security credentials and use those credentials to make authenticated requests to Amazon S3. By default, the temporary security credentials are valid for only one hour. The user can specify the session duration only if the user uses the IAM user credentials to request a session.


Reference:

http://docs.aws.amazon.com/AmazonS3/latest/dev/AuthUsingTempSessionTokenJava.html



A user has enabled server side encryption with S3. The user downloads the encrypted object from S3. How can the user decrypt it?

  1. The user needs to decrypt the object using their own private key
  2. S3 does not support server side encryption
  3. S3 manages encryption and decryption automatically
  4. S3 provides a server side key to decrypt the object

Answer(s): C

Explanation:

If the user is using the server-side encryption feature, Amazon S3 encrypts the object data before saving it on disks in its data centres and decrypts it when the user downloads the objects. Thus, the user is free from the tasks of managing encryption, encryption keys, and related tools.


Reference:

http://docs.aws.amazon.com/AmazonS3/latest/dev/UsingEncryption.html






Post your Comments and Discuss Amazon AWS-Certified-Big-Data-Specialty exam with other Community members:

AWS-Certified-Big-Data-Specialty Exam Discussions & Posts