exam questions

Exam AWS Certified Cloud Practitioner CLF-C02 All Questions

View all questions & answers for the AWS Certified Cloud Practitioner CLF-C02 exam

Exam AWS Certified Cloud Practitioner CLF-C02 topic 1 question 98 discussion

A company wants to grant users in one AWS account access to resources in another AWS account. The users do not currently have permission to access the resources.
Which AWS service will meet this requirement?

  • A. IAM group
  • B. IAM role
  • C. IAM tag
  • D. IAM Access Analyzer
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
TheFivePips
Highly Voted 1 year, 3 months ago
Selected Answer: B
A. IAM group: Containers for IAM users. They are used to simplify the management of IAM policies by allowing you to attach policies to a group and automatically apply those policies to all users in the group. However, IAM groups are not directly used for cross-account access. B. IAM role: Are used to delegate permissions to users, applications, or services. In the context of cross-account access, you can create an IAM role in the target account and define policies that grant access to the necessary resources. Users in the source account can assume the role to access resources in the target account. IAM roles are commonly used for cross-account access scenarios. C. IAM tag: Are metadata that you can assign to IAM users, groups, roles, and policies. While tags are useful for organizing and managing resources, they are not the primary mechanism for granting cross-account access. D. IAM Access Analyzer: A tool that helps identify resources that are shared with an external entity or are publicly accessible. It is used for analyzing access across accounts, but not specifically for setting up cross-account access.
upvoted 14 times
...
Amin_013
Most Recent 3 months, 3 weeks ago
Selected Answer: B
B. IAM role: Are used to delegate permissions to users, applications, or services. In the context of cross-account access, you can create an IAM role in the target account and define policies that grant access to the necessary resources. Users in the source account can assume the role to access resources in the target account. IAM roles are commonly used for cross-account access scenarios.
upvoted 1 times
...
ShaiTay
5 months, 1 week ago
Selected Answer: B
B. IAM role
upvoted 1 times
...
vhvhkkk
7 months, 1 week ago
Selected Answer: A
Group beacuse of users,
upvoted 1 times
...
MorganFreeInQatar
7 months, 3 weeks ago
Selected Answer: A
Should Be A. Because we are talking about USERS and not a USER.
upvoted 1 times
...
Eleftheriia
9 months, 1 week ago
Since there are many users that need access, shouldn't a group be created and include those users in the group and then grant to the group the role?
upvoted 1 times
...
mohafiz
10 months, 2 weeks ago
Selected Answer: B
I think it is also better for the trusted account to use STS AssumeRole API call to assume the role with temporary credentials
upvoted 1 times
...
Ruffyit
1 year, 2 months ago
B. IAM role: Are used to delegate permissions to users, applications, or services. In the context of cross-account access, you can create an IAM role in the target account and define policies that grant access to the necessary resources. Users in the source account can assume the role to access resources in the target account. IAM roles are commonly used for cross-account access scenarios.
upvoted 1 times
...
[Removed]
1 year, 4 months ago
Selected Answer: B
"You can use roles to delegate access to users, applications, or services that don't normally have access to your AWS resources. For example, you might want to grant users in your AWS account access to resources they don't usually have, or grant users in one AWS account access to resources in another account."
upvoted 2 times
...
datmd77
1 year, 4 months ago
B. IAM Role
upvoted 1 times
...
petercorn
1 year, 5 months ago
Selected Answer: B
https://docs.aws.amazon.com/IAM/latest/UserGuide/id_roles.html
upvoted 2 times
...
FMORADELL
1 year, 5 months ago
Selected Answer: B
IAM role
upvoted 1 times
...
Sreeni_A
1 year, 5 months ago
IAM Role
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago