exam questions

Exam AWS-SysOps All Questions

View all questions & answers for the AWS-SysOps exam

Exam AWS-SysOps topic 1 question 515 discussion

Exam question from Amazon's AWS-SysOps
Question #: 515
Topic #: 1
[All AWS-SysOps Questions]

In IAM, can you attach more than one inline policy to a particular entity such a user, role, or group?

  • A. No
  • B. Yes
  • C. Yes, you can but only if you attach the policy within a VPC.
  • D. Yes, you can but only if you attach the policy within the GovCloud.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️
In AWS IAM, you can add as many inline policies as you want to a user, role, or group, but the total aggregate policy size (the sum size of all inline policies) per entity cannot exceed the following lim-its: User policy size cannot exceed 2,048 characters.
Role policy size cannot exceed 10,240 characters. Group policy size cannot exceed 5,120 characters.
Reference:
http://docs.aws.amazon.com/IAM/latest/UserGuide/LimitationsOnEntities.html

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
sen12
Highly Voted 2 years, 6 months ago
In FAQ: How many policies can I attach to an IAM role? For inline policies: You can add as many inline policies as you want to a user, role, or group, but the total aggregate policy size (the sum size of all inline policies) per entity cannot exceed the following limits: User policy size cannot exceed 2,048 characters. Role policy size cannot exceed 10,240 characters. Group policy size cannot exceed 5,120 characters.
upvoted 5 times
...
albert_kuo
Most Recent 10 months ago
Selected Answer: B
n AWS Identity and Access Management (IAM), you can attach more than one inline policy to a particular entity, such as a user, role, or group. This allows you to define and manage multiple policies that grant different permissions to the entity. By attaching multiple inline policies, you can have fine-grained control over the access and permissions assigned to the entity.
upvoted 1 times
...
sen12
2 years, 5 months ago
Its like, multiple Inline policies to ONE identity.NOT, multiple Identities to one Inline Policy. So the answer is yes is B
upvoted 4 times
...
sen12
2 years, 7 months ago
This defeats the purpose of Inline Policy of attaching more than one Identity. Using Inline Policies Inline policies are useful if you want to maintain a strict one-to-one relationship between a policy and the identity that it's applied to. For example, you want to be sure that the permissions in a policy are not inadvertently assigned to an identity other than the one they're intended for. When you use an inline policy, the permissions in the policy cannot be inadvertently attached to the wrong identity. In addition, when you use the AWS Management Console to delete that identity, the policies embedded in the identity are deleted as well. That's because they are part of the principal entity.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago