No Installation Required, Instantly Prepare for the CLF-C02 exam and please click the below link to start the CLF-C02 Exam Simulator with a real CLF-C02 practice exam questions.
Use directly our on-line CLF-C02 exam dumps materials and try our Testing Engine to pass the CLF-C02 which is always updated.
- (Exam Topic 1)
A company needs to schedule the rotation of database credentials in the AWS Cloud. Which AWS service should the company use to perform this task?
Correct Answer:D
AWS Secrets Manager makes it easier to rotate, manage, and retrieve database credentials, API keys, and other secrets throughout their lifecycle. The key features of this service include the ability to:
* 1. Secure and manage secrets centrally. You can store, view, and manage all your secrets centrally. By default, Secrets Manager encrypts these secrets with encryption keys that you own and control. You can use fine-grained IAM policies or resource-based policies to control access to your secrets. You can also tag secrets to help you discover, organize, and control access to secrets used throughout your organization.
* 2. Rotate secrets safely. You can configure Secrets Manager to rotate secrets automatically without disrupting your applications. Secrets Manager offers built-in integrations for rotating credentials for all Amazon RDS databases (MySQL, PostgreSQL, Oracle, Microsoft SQL Server, MariaDB, and Amazon Aurora.) You can also extend Secrets Manager to meet your custom rotation requirements by creating an AWS Lambda function to rotate other types of secrets.
* 3. Transmit securely. Secrets are transmitted securely over Transport Layer Security (TLS) protocol 1.2. You can also use Secrets Manager with Amazon Virtual Private Cloud (Amazon VPC) endpoints powered by AWS Privatelink to keep this communication within the AWS network and help meet your compliance and regulatory requirements to limit public internet connectivity.
* 4. Pay as you go. Pay for the secrets you store in Secrets Manager and for the use of these secrets; there are no long-term contracts, licensing fees, or infrastructure and personnel costs. For example, a typical
production-scale web application will generate an estimated monthly bill of $6. If you follow along the instructions in this blog post, your estimated monthly bill for Secrets Manager will be $1. Note: you may incur additional charges for using Amazon RDS and Amazon Lambda, if you’ve already consumed the free tier for these services.
Now that you’re familiar with Secrets Manager features, I’ll show you how to store and automatically rotate credentials for an Oracle database hosted on Amazon RDS. I divided these instructions into three phases:
* 1. Phase 1: Store and configure rotation for the superuser credential
* 2. Phase 2: Store and configure rotation for the application credential
* 3. Phase 3: Retrieve the credential from Secrets Manager programmatically
- (Exam Topic 3)
Which characteristic of the AWS Cloud helps users eliminate underutilized CPU capacity?
Correct Answer:B
- (Exam Topic 3)
A company uses Amazon EC2 instances to run its web application. The company uses On-demand instances and Spot instances. The company needs to visualize its monthly spending on both types of instances.
Which AWS service or feature will meet this requirement?
Correct Answer:A
- (Exam Topic 3)
An application runs on multiple Amazon EC2 instances that access a shared file system simultaneously. Which AWS storage service should be used?
Correct Answer:B
Amazon EFS provides secure access for thousands of connections for Amazon EC2 instances and on-premises servers, as well as AWS compute services, including ECS, EKS, AWS Fargate, and AWS Lambda, simultaneously using a traditional file permissions model, file locking capabilities, and hierarchical directory structure via the NFSv4 protocol. Amazon EC2 instances can access your file system across AZs, regions, and VPCs, while on-premises servers can access using AWS Direct Connect or AWS VPN.
- (Exam Topic 3)
Which AWS service or feature provides high availability and low latency within an AWS Region?
Correct Answer:B