A company needs to evaluate its AWS environment and provide best practice recommendations in five categories: cost, performance, service limits, fault tolerance, and security. Which AWS service can the company use to meet these requirements?
A. AWS Shield B. AWS WAF C. AWS Trusted Advisor D. AWS Service Catalog
C. AWS Trusted Advisor
Explanation/Reference:
C ?AWS Trusted Advisor is used to evaluate its AWS environment and provide best practice recommendations in five categories: cost, performance, service limits, fault tolerance, and security.
AWS Shield is for DDoS protection.
AWS WAF is for SQL injection protection.
AWS Service Catalog is for managing services.
Question 1485:
A company needs to run a workload that requires low-latency access to an on-premises data center. The company wants a fully managed service to extend its existing VPC to local resources.
Which AWS service or resource should the company use?
A. AWS Outposts B. Amazon Connect C. AWS Snowball Edge D. Amazon WorkLink
A. AWS Outposts
Explanation/Reference:
comparison between the outpost and Local zone "should be local and on-premises" local zones are not on premises at all https://aws.amazon.com/blogs/compute/aws-local-zones-and-aws-outposts-choosing-the- right-technology-for-your-edge-workload/
Question 1486:
A company is considering using AWS for a self-hosted database that requires a nightly shutdown for maintenance and cost-saving purposes.
Which service should the company use?
A. Amazon Redshift B. Amazon DynamoDB C. Amazon Elastic Compute Cloud (Amazon EC2) with Amazon EC2 instance store D. Amazon EC2 with Amazon Elastic Block Store (Amazon EBS)
D. Amazon EC2 with Amazon Elastic Block Store (Amazon EBS)
Question 1487:
A user is using AWS account root user credentials to try to close an AWS account that is managed by AWS Organizations. However, the attempt is unsuccessful. What could cause this attempt to be unsuccessful?
A. No multi-factor authentication (MFA) has been configured. B. The root user is not specifically assigned to the administration group. C. The root user's password does not meet the minimum password complexity requirements. D. The organizational administrator has used a service control policy (SCP) to limit the root user permissions.
D. The organizational administrator has used a service control policy (SCP) to limit the root user permissions.
Explanation/Reference:
D. The organizational administrator has used a service control policy (SCP) to limit the root user permissions.
When an AWS account is managed by AWS Organizations, the root user of the account has limited permissions to perform actions such as closing the account. The organizational administrator can use a service control policy (SCP) to limit the permissions of the root user and prevent them from performing certain actions, including closing the account. Therefore, if the root user is trying to close an AWS account that is managed by AWS Organizations and the attempt is unsuccessful, it is likely because the organizational administrator has used an SCP to limit the root user's permissions
Question 1488:
A network engineer needs to establish a dedicated 10 Gbps network connection from an on-premises environment to AWS. Which AWS service or feature should the engineer use?
A. Amazon Route 53 B. AWS Direct Connect C. AWS PrivateLink D. AWS VPN
B. AWS Direct Connect
Explanation/Reference:
AWS Direct Connect can create a dedicated network connection between your premises and AWS. Reference: https://aws.amazon.com/directconnect/
Question 1489:
A company needs real-time guidance to follow AWS best practices to save money, improve system performance, and close security gaps. Which AWS service should the company use?
A. Amazon GuardDuty B. AWS Trusted Advisor C. AWS Management Console D. AWS Systems Manager
B. AWS Trusted Advisor
Explanation/Reference:
AWS Trusted Advisor provides recommendations that help you follow AWS best practices. Trusted Advisor evaluates your account by using checks.
Question 1490:
Which AWS service or feature can a company use to create a private, secured and scalable network environment in the AWS Cloud?
A. Amazon Elastic Container Service (Amazon ECS) B. Amazon S3 C. Amazon VPC D. Route tables
C. Amazon VPC
Explanation/Reference:
Amazon VPC is the correct answer because it allows a company to create a private, secured, and scalable network environment in the AWS Cloud.
Nowadays, the certification exams become more and more important and required by more and more
enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare
for the exam in a short time with less efforts? How to get a ideal result and how to find the
most reliable resources? Here on Vcedump.com, you will find all the answers.
Vcedump.com provide not only Amazon exam questions,
answers and explanations but also complete assistance on your exam preparation and certification
application. If you are confused on your CLF-C01 exam preparations
and Amazon certification application, do not hesitate to visit our
Vcedump.com to find your solutions here.