Amazon Web Services Flashcards
7 cards from real Architecting on AWS Certification practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Amazon Web Services flashcards as text
A company wants to migrate an on-premises VMware environment to AWS with minimal changes. Which service is specifically designed for this use case?
Answer: VMware Cloud on AWS
VMware Cloud on AWS lets customers run their VMware workloads natively on AWS infrastructure without refactoring.
Which AWS networking feature provides a private, dedicated network connection between an on-premises data center and AWS, bypassing the public internet?
Answer: AWS Direct Connect
AWS Direct Connect establishes a dedicated private network connection from on-premises to AWS, offering consistent bandwidth and latency.
An architect needs to ensure that an RDS database can survive an Availability Zone failure with automatic failover and no data loss. Which feature enables this?
Answer: RDS Multi-AZ Deployment
RDS Multi-AZ maintains a synchronous standby replica in a different AZ and automatically fails over to it if the primary instance fails.
Which AWS service provides a fully managed Apache Kafka-compatible streaming service for real-time data ingestion and processing?
Answer: Amazon MSK
Amazon MSK (Managed Streaming for Apache Kafka) is a fully managed service that makes it easy to build and run Kafka-based streaming applications.
A company needs to run containers without managing underlying servers. Which two AWS services support serverless container execution? (Choose the best single answer representing both)
Answer: AWS Fargate
AWS Fargate is the serverless compute engine for containers that works with both ECS and EKS, removing the need to provision or manage servers.
Which caching strategy writes data to the cache and the database simultaneously, ensuring cache and database are always in sync?
Answer: Write-through
Write-through caching updates both the cache and the backing store synchronously on every write, keeping them consistent.
An architect needs to enforce that all objects uploaded to an S3 bucket are encrypted. Which S3 feature ensures this without relying on the client?
Answer: S3 Bucket Policies denying uploads without encryption
A bucket policy with a Deny condition on s3:PutObject when server-side encryption headers are absent enforces encryption for all uploads.