exam questions

Exam AWS-SysOps All Questions

View all questions & answers for the AWS-SysOps exam

Exam AWS-SysOps topic 1 question 566 discussion

Exam question from Amazon's AWS-SysOps
Question #: 566
Topic #: 1
[All AWS-SysOps Questions]

Application developers are reporting Access Denied errors when trying to list the contents of an Amazon S3 bucket by using the IAM user
`arn:aws:iam::111111111111:user/application`. The following S3 bucket policy is in use:

How should a SysOps Administrator modify the S3 bucket policy to fix the issue?

  • A. Change the ג€Effectג€ from ג€Allowג€ to ג€Denyג€
  • B. Change the ג€Actionג€ from ג€s3:List*ג€ to ג€s3:ListBucketג€
  • C. Change the ג€Resourceג€ from ג€arn:aws:s3:::bucketname/*ג€ to ג€arn:aws:s3:::bucketnameג€
  • D. Change the ג€Principalג€ from ג€arn:aws:iam::111111111111:user/applicationג€ to ג€arn:aws:iam::111111111111:role/applicationג€
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
albert_kuo
6 months, 2 weeks ago
Selected Answer: B
https://docs.aws.amazon.com/AmazonS3/latest/userguide/access-policy-language-overview.html
upvoted 1 times
...
ablazleon
2 years, 1 month ago
Selected Answer: C
https://stackoverflow.com/questions/38774798/accessdenied-for-listobjects-for-s3-bucket-when-permissions-are-s3
upvoted 2 times
...
juraj666
2 years, 3 months ago
Selected Answer: C
C - because listing of bucket is done on the bucketname and not the objects in it
upvoted 2 times
...
Madaan
2 years, 4 months ago
Selected Answer: D
My answer would be D because the access is for a role rather than a user. But happy to be corrected.
upvoted 1 times
...
Damod
2 years, 6 months ago
B. https://aws.amazon.com/blogs/security/writing-iam-policies-how-to-grant-access-to-an-amazon-s3-bucket/
upvoted 3 times
Madaan
2 years, 4 months ago
Based on what you are saying, the answer should be C. With listbucket you don't need a * with the bucketname ( You only need a star with listobject )
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago