โ† All AWS Flashcard Decks

DevOps Configuration Management & Infrastructure as Code Flashcards

9 cards from real AWS practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 9 DevOps Configuration Management & Infrastructure as Code flashcards as text
  1. What is the primary benefit of Infrastructure as Code (IaC)?

    Answer: It provides consistent and repeatable infrastructure deployments

    Infrastructure as Code (IaC) allows infrastructure to be defined and managed using code, ensuring that environments are provisioned identically every time. This eliminates configuration drift, reduces human error, and makes deployments consistent and repeatable across development, testing, and production environments. This consistency is a primary benefit of IaC.

  2. Which tool is commonly used for configuration management?

    Answer: Ansible

    Ansible is a popular open-source automation engine used for configuration management, application deployment, and orchestration. It operates agentlessly, using SSH, and allows users to define desired system states in human-readable YAML playbooks. This makes it highly effective for managing server configurations and ensuring consistency across environments.

  3. What is a key advantage of using declarative syntax in IaC?

    Answer: It provides clearer intention of desired outcomes

    Declarative syntax in IaC focuses on *what* the desired state of the infrastructure should be, rather than *how* to achieve it. This makes the configuration files easier to read, understand, and maintain, as they clearly express the end goal without detailing every step. This clarity improves collaboration and reduces errors.

  4. What does 'idempotency' mean in the context of configuration management?

    Answer: It provides consistent results on multiple runs

    Idempotency in configuration management means that applying the same configuration multiple times will always result in the same system state, without unintended side effects. This is crucial for reliability, as it ensures that scripts can be run repeatedly without causing issues or unnecessary changes. It guarantees consistent results, which is vital for automated deployments.

  5. Which AWS service is designed for infrastructure automation?

    Answer: AWS CloudFormation

    AWS CloudFormation is an AWS service that enables users to model and provision AWS and third-party resources using Infrastructure as Code. It allows you to define your infrastructure in templates and then reliably deploy and update it across your AWS accounts. This service is central to automating infrastructure management within the AWS ecosystem.

  6. Why is version control important in IaC?

    Answer: To ensure transparency and rollback capabilities

    Version control for IaC templates allows teams to track every change made to their infrastructure definitions, providing a complete history and transparency. This also enables easy rollback to previous stable configurations, mitigating risks and ensuring recoverability from errors. It's essential for collaborative development and maintaining infrastructure stability.

  7. What is the function of state files in IaC tools like Terraform?

    Answer: They record the actual infrastructure setup to guide updates

    State files in IaC tools like Terraform store a mapping between the resources defined in your configuration and the real-world infrastructure. This state is crucial for the tool to understand what resources already exist, plan changes efficiently, and manage dependencies during updates. It acts as a source of truth for the current infrastructure setup.

  8. Which practice enhances scalability in IaC?

    Answer: Creating reusable modules

    Creating reusable modules in IaC allows you to encapsulate common infrastructure patterns and deploy them consistently across different environments or projects. This promotes standardization, reduces duplication, and significantly enhances the scalability and maintainability of your infrastructure code. It makes managing complex infrastructure much more efficient.

  9. Which principle is essential for secure configuration management?

    Answer: Apply least privilege principle for access control

    The principle of least privilege dictates that users and systems should only be granted the minimum necessary permissions to perform their specific tasks. Applying this to configuration management minimizes the potential impact of a security breach or misconfiguration. It enhances overall security by limiting access to critical infrastructure resources.