exam questions

Exam AWS Certified Solutions Architect - Associate SAA-C02 All Questions

View all questions & answers for the AWS Certified Solutions Architect - Associate SAA-C02 exam

Exam AWS Certified Solutions Architect - Associate SAA-C02 topic 1 question 365 discussion

A development team is collaborating with another company to create an integrated product. The other company needs to access an Amazon Simple Queue
Service (Amazon SQS) queue that is contained in the development team's account. The other company wants to poll the queue without giving up its own account permissions to do so.
How should a solutions architect provide access to the SQS queue?

  • A. Create an instance profile that provides the other company access to the SQS queue.
  • B. Create an IAM policy that provides the other company access to the SQS queue.
  • C. Create an SQS access policy that provides the other company access to the SQS queue.
  • D. Create an Amazon Simple Notification Service (Amazon SNS) access policy that provides the other company access to the SQS queue.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Atanu_M
Highly Voted 3 years, 6 months ago
Ans. C - There is one major difference between IAM and Amazon SQS policies: the Amazon SQS policy system lets you grant permission to other AWS Accounts, whereas IAM doesn't. https://docs.aws.amazon.com/AWSSimpleQueueService/latest/SQSDeveloperGuide/sqs-using-identity-based-policies.html
upvoted 45 times
...
jkwek
Highly Voted 3 years, 5 months ago
Answer is C. https://docs.aws.amazon.com/AWSSimpleQueueService/latest/SQSDeveloperGuide/sqs-using-identity-based-policies.html There are two ways to give your users permissions to your Amazon SQS resources: using the Amazon SQS policy system and using the IAM policy system. You can use one or the other, or both. The question here required the Amazon SQS policy system, keywords from question "company wants to poll the queue without giving up its own account permissions" means the IAM method cannot be used.
upvoted 26 times
Harshul
3 years, 5 months ago
Excellent Explanation, Thanks.
upvoted 1 times
...
RapidStar
3 years ago
Thank you for a brilliant explanation!
upvoted 1 times
...
...
SkyZeroZx
Most Recent 2 years ago
Selected Answer: C
Yes , Ans C https://docs.aws.amazon.com/AWSSimpleQueueService/latest/SQSDeveloperGuide/sqs-basic-examples-of-sqs-policies.html
upvoted 1 times
...
qax2022
2 years, 7 months ago
Selected Answer: C
can't use iam , needs to be in the same account. so C.
upvoted 1 times
...
FF11
3 years, 3 months ago
Selected Answer: C
C is the answer.
upvoted 1 times
...
jc966
3 years, 5 months ago
There is one major difference between IAM and Amazon SQS policies: the Amazon SQS policy system lets you grant permission to other AWS Accounts, whereas IAM doesn't.
upvoted 2 times
...
syu31svc
3 years, 5 months ago
https://docs.aws.amazon.com/AWSSimpleQueueService/latest/SQSDeveloperGuide/sqs-basic-examples-of-sqs-policies.html C is the answer
upvoted 5 times
...
theEngineer
3 years, 6 months ago
C is okay
upvoted 3 times
...
waqas
3 years, 6 months ago
C seems good.
upvoted 3 times
...
dmscountera
3 years, 6 months ago
I cannot understand the question 100%, but .. C. Create an SQS access policy that provides the other company access to the SQS queue.
upvoted 5 times
noahsark
3 years, 6 months ago
yeah maybe C: Grant cross-account permissions to a role and a user name: https://docs.aws.amazon.com/AWSSimpleQueueService/latest/SQSDeveloperGuide/sqs-basic-examples-of-sqs-policies.html
upvoted 3 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago