AWS认证SAA-C03每日一题

本题库由云计算狂魔微信公众号分享。
【SAA-C03助理级解决方案架构师认证】

A company recently signed a contract with an AWS Managed Service Provider (MSP) Partner for help with an application migration initiative. A solutions architect needs to share an Amazon Machine Image (AMI) from an existing AWS account with the MSP Partner's AWS account The AMI is backed by Amazon Elastic Block Store (Amazon EBS)and uses a customer managed customer master key (CMK) to encrypt EBS volume snapshots.
What is the MOST secure way for the solutions architect to share the AMI with the MSP Partner's AWS account?


A  :   Make the encrypted AMI and snapshots to allow the MSP Partner's AWS account to publicly available Modify the CMKs key policy use the key


B  :   Modify the launch Permissionproperty of the AMI Share the AMI with the MSP Partner's  AWS account only. Modify the CMKs key policy to allow the MSP Partner's AWS account to use the key


C  :   Modify the launch Permission property of the AMI. Share the AMI with the MSP Partner's AWS account only. Modify the CMKs key policy to trust a new CMK that is owned by the MSP Partner for encryption.


D  :   Export the AMl from the source account to an Amazon S3 bucket in theMSP Partner's AWS account. Encrypt the S3 bucket with a CMK that is owned by the MSP Partner. Copy and launch the AMI in the MSP Partner's AWS account.

  • 5
    点赞
  • 9
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值