exam questions

Exam AWS-SysOps All Questions

View all questions & answers for the AWS-SysOps exam

Exam AWS-SysOps topic 1 question 901 discussion

Exam question from Amazon's AWS-SysOps
Question #: 901
Topic #: 1
[All AWS-SysOps Questions]

Developers are using IAM access keys to manage AWS resources using AWS CLI. Company policy requires that access keys are automatically disabled when the access key age is greater than 90 days.
Which solution will accomplish this?

  • A. Configure an Amazon CloudWatch alarm to trigger an AWS Lambda function that disables keys older than 90 days.
  • B. Configure AWS Trusted Advisor to identify and disable keys older than 90 days.
  • C. Set a password policy on the account with a 90-day expiration.
  • D. Use an AWS Config rule to identify noncompliant keys. Create a custom AWS Systems Manager Automation document for remediation.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Drey
Highly Voted 1 year, 1 month ago
Its D. https://aws.amazon.com/blogs/mt/managing-aged-access-keys-through-aws-config-remediations/
upvoted 6 times
...
Finger41
Most Recent 4 months, 3 weeks ago
Selected Answer: D
https://aws.amazon.com/blogs/mt/managing-aged-access-keys-through-aws-config-remediations/
upvoted 1 times
...
Cyril_the_Squirl
11 months, 3 weeks ago
D is Correct.
upvoted 1 times
...
Huy
1 year ago
C. Question asks for auto disable the key. Config doesn't do that.
upvoted 1 times
fromnowhere
5 months, 4 weeks ago
Yes config doesn't do that but AWS Systems Manager does that's why D is correct
upvoted 1 times
...
ZL23
1 year ago
password policy is for "password", not access keys. "The IAM password policy does not apply to the AWS account root user password or IAM user access keys." Ref.: https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_passwords_account-policy.html#IAMPasswordPolicy
upvoted 2 times
...
...
RicardoD
1 year ago
D is the answer
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago