Examtopics

AWS Certified DevOps Engineer - Professional
  • Topic 1 Question 262

    A company has an organization in AWS Organizations for its multi-account environment. A DevOps engineer is developing an AWS CodeArtifact based strategy for application package management across the organization. Each application team at the company has its own account in the organization. Each application team also has limited access to a centralized shared services account.

    Each application team needs full access to download, publish, and grant access to its own packages. Some common library packages that the application teams use must also be shared with the entire organization.

    Which combination of steps will meet these requirements with the LEAST administrative overhead?

    3 つ選択
    • Create a domain in each application team's account. Grant each application team's account full read access and write access to the application team's domain.

    • Create a domain in the shared services account. Grant the organization read access and CreateRepository access.

    • Create a repository in each application team’s account. Grant each application team’s account full read access and write access to its own repository.

    • Create a repository in the shared services account. Grant the organization read access to the repository in the shared services account Set the repository as the upstream repository in each application team's repository.

    • For teams that require shared packages, create resource-based policies that allow read access to the repository from other application teams' accounts.

    • Set the other application teams' repositories as upstream repositories.


    シャッフルモード