AWS SA Associate Practice Questions-4

Updated: Jul 17, 2020

1. Does S3 provide read-after-write consistency?

A. No, not for any region

B. Yes, but only for certain regions

C. Yes, but only for certain regions and for new objects

D. Yes, for all regions

2. What is the maximum size of a single S3 object?

A. There is no such limit

B. 5 TB

C. 5 GB

D. 100 GB

3. Is data stored in S3 is always encrypted?

A. Yes, S3 always encrypts data for security

B. No, there is no such feature

C. Yes, but only when right APIs are called

D. Yes, but only in Gov Cloud datacenters

4. What is true for S3 buckets (select multiple if more than one is true)?

A. Bucket namespace is shared and is global among all AWS users.

B. Bucket names can contain alphanumeric characters

C. Bucket are associated with a region, and all data in a bucket resides in that region

D. Buckets can be transferred from one account to another through API

5. EBS can always tolerate an Availability Zone failure?

A. No, all EBS volume is stored in a single Availability Zone

B. Yes, EBS volume has multiple copies so it should be fine

C. Depends on how it is setup

D. Depends on the Region where EBS volume is initiated

6. Which of the following Auto scaling CANNOT do (select multiple if more than one is true)?

A. Startup EC2 instances when CPU utilization is above threshold

B. Release EC2 instances when CPU utilization is below threshold

C. Increase the instance size when utilization is above threshold

D. Add more Relational Database Service (RDS) read replicas when utilization is above threshold

7. Which of the following benefits does adding Multi-AZ deployment in RDS provide (choose multiple if more than one is true)?

A. Multi AZ deployed database can tolerate an Availability Zone failure

B. Decrease latencies if app servers accessing database are in multiple Availability zones

C. Make database access times faster for all app servers

D. Make database more available during maintenance tasks

8. What happens to data when an EC2 instance terminates (select multiple if more than one is true)?

A. For EBS backed AMI, the EBS volume with operation system on it is preserved

B. For EBS backed AMI, any volume attached other than the OS volume is preserved

C. All the snapshots of the EBS volume with operating system is preserved

D. For S3 backed AMI, all the data in the local (ephemeral) hard drive is deleted

9. For an EC2 instance launched in a private subnet in VPC, which of the following are the options for it to be able to connect to the internet (assume security groups have proper ports open).

A. Simply attach an elastic IP

B. If there is also a public subnet in the same VPC, an ENI can be attached to the instance with the ip address range of the public subnet

C. If there is a public subnet in the same VPC with a NAT instance attached to internet gateway, then a route can be configured from the instance to the NAT

D. There is no way for an instance in private subnet to talk to the internet

10. When an ELB is setup, what is the best way to route a website’s traffic to it?

A. Resolve the ELB name to an ip address and point the website to that ip address

B. There is no direct way to do so, Route53 has to be used

C. Generate a CNAME record for the website pointing to the DNS name of the ELB


1) Answer: C.

S3’s consistency model is that of eventual consistency. This means that when an object is stored in S3, it is replicated in different datacenters (availability zones) in the same region. And it can take a short amount of time before all the data centers have a uniform view of the object (This time is usually less than a second, but if system is in distress it could take much longer). Thus in essence, S3 does not provide read-after-write consistency.

But the S3 team has modified the algorithm so as to provide read-after-write consistency for new objects. Which means that if I upload “object-n” for the first time (lets call it version-1), I get the opportunity to immediately read it without any consistency issues. This is though not supported for US-East region. Thus S3 support read-after-write consistency for new objects but for all regions except US-East.

2) Answer: B. Using multipart upload, a single object in S3 can be upto 5TB in size.

3) Answer: C. S3 by default do not encrypt the data stored into its service. But using Server Side Encryption feature, if proper headers are passes (in REST), S3 will first encrypt the data and then store that encrypted data.

4) Answers: A, B, C Bucket namespace is global, which means that if someone creates a bucket called “pics” nobody else can create a bucket of the same name. Bucket names can contain alphanumeric characters which means we can have a bucket named “cloudthat1234”. And when we create a bucket, we have to select a region for the bucket, and all data stored in that bucket is physically stored in that region only (although the data can be accessed from anywhere in the world with proper credentials).

5) Answer: A One of the known fallacies of EBS is that all the data of a single volume lives in a single Availability Zone. Thus it cannot withstand Availability zone failures.

6) Answer: C, D Auto scaling cannot increase instance size of an EC2 instance. The idea is to be able to scale horizontally, and not vertically. Also D is correct as Auto scaling currently cannot automate RDS instance to do anything.

7) Answers: A, D RDS Multi AZ does make database a single AZ failure tolerant, as it has automatic failover feature, where the secondly will become primary and application can keep accessing the database. It also increases availability during maintenance, as maintenance is performed first on secondary, then it's made primary and then old-primary is updated.

8) Answers: B, C, D

9) Answer: C

10) Answer: C The ip address of an ELB can change, so it’s not advisable to point domain directly at that ip address. Instead use CNAME to map to the ELB DNS name

31 views0 comments

Recent Posts

See All

Question 1 Exit Quiz Domain: Security Which AWS service provides infrastructure security optimization recommendations? A.AWS Application Programming Interface(API) B.Reserved Instances C.AWS Trusted A