Académique Documents
Professionnel Documents
Culture Documents
EXPLANATION: When a new IAM user is created, that user has NO access to any
AWS services. This is called a non-explicit deny. For that user, access must be
explicitly allowed via IAM permission and access policies.
QUESTION 3
EXPLANATION: Security Groups and NACLs are the two parts of the VPC Security
Layers. Security Groups are a firewall on the instance level, and NACLs are a firewall
on the subnet level.
QUESTION 4
EXPLANATION: A NAT gateway provides the most secure solution for granting EC2
instances in private subnet the ability to download software packages. However, the
NAT gateway MUST be placed in a public subnet, and a route to it must be created in
the route table associated with the private subnets.
QUESTION 7
• SWF
• SQS
Correct Answer • SNS
• CloudWatch
EXPLANATION: Kinesis producers include things like IoT sensors and mobile
devices that collect data and send it into the Kinesis stream.
QUESTION 15
EXPLANATION: When you configure a VPN, you're configuring it from the VPC and
from the on-premises network. You are taking information (the public IP) from the
on-premises network and configuring it inside of the VPC.
QUESTION 17
EXPLANATION: SSH will travel over port 22 for inbound request. However, return
(outbound) SSH travel can travel over any of the ephemeral ports (1024-65535). So
it is important that those port ranges be allowed on NACL outbound rules if you want
to communicate using SSH.
QUESTION 19
Correct Answer • They are persistent and can live past the lifetime of the
instance
• They will be deleted anytime the instance is stopped
• They are ephemeral and only live during the lifetime of the
instance
• They cannot be used as an instance's root storage device
EXPLANATION: Scaling policies belong to the Auto Scaling group. The policies
themselves dictate (via chosen CloudWatch metrics thresholds) when instances
should be added or removed.
QUESTION 22
EXPLANATION: Objects uploaded and stored using the standard storage class must
use lifecycles to move them to Glacier.
QUESTION 25
EXPLANATION: You should not terminate an instance that you may need to place
back into production in a few days. The best way to minimize charges is to stop the
instances to avoid any data transfer charges that the instance might incur if left running.
5 TIPS
PASSING YOUR AWS CERTIFIED
SOLUTIONS ARCHITECT EXAM
1 UNDERSTAND THE QUESTIONS – Our practice quiz is just a starting point. AWS
also provides exam blueprints to help you prepare for the exam. Knowing what
type of questions will be asked is key because it allows you to create a strategy for
how to answer them.
2 CREATE A STUDY PLAN – We get it, everyone is busy, but it’s important to set
aside a fixed amount of time per week for studying. When you’re creating your
plan, write down what topics you want to study and when you’ll study them. Even
20 minutes a day can make a difference, and sticking to your schedule makes
sure that you stay on track to meet your learning goals.
3 FIND A STUDY PARTNER – Studies have shown that people learn best
together. Finding a buddy can help complement your weaknesses and hold you
accountable to your study plan. We recommend looking for an AWS meetup in
your area or joining an online community like the ones on Linux Academy and
Cloud Assessments.
4 APPLY WHAT YOU LEARN – Reviewing the material on paper isn’t enough. When
you become a Certified Solutions Architect, you’ll be expected to use AWS
services in real environments, so it makes sense that you’d use the services
when practicing as well. With Cloud Assessments, you can do just that – prove your
skills through hands-on Challenges and Learning Activities to make sure you
know the platform inside and out.
5 FOCUS ON YOUR WEAKNESSES – Why would you spend hours going over
material you already know? Part of being a Solutions Architect means being
well-rounded and knowing many different AWS services. Knowing which topics to
study can be a challenge of its own, and that’s where Cloud Assessments comes in.
Our engine uses artificial intelligence to create custom learning journeys based
on what you already know and what you need to practice.
THANK YOU
linuxacademy.com