Topic 1 Question 67
2 つ選択A company has its AWS accounts in an organization in AWS Organizations. AWS Config is manually configured in each AWS account. The company needs to implement a solution to centrally configure AWS Config for all accounts in the organization The solution also must record resource changes to a central account. Which combination of actions should a DevOps engineer perform to meet these requirements?
Configure a delegated administrator account for AWS Config. Enable trusted access for AWS Config in the organization.
Configure a delegated administrator account for AWS Config. Create a service-linked role for AWS Config in the organization’s management account.
Create an AWS CloudFormation template to create an AWS Config aggregator. Configure a CloudFormation stack set to deploy the template to all accounts in the organization.
Create an AWS Config organization aggregator in the organization's management account. Configure data collection from all AWS accounts in the organization and from all AWS Regions.
Create an AWS Config organization aggregator in the delegated administrator account. Configure data collection from all AWS accounts in the organization and from all AWS Regions.
ユーザの投票
コメント(5)
BE is the most efficient
👍 3Kodoma2023/05/23- 正解だと思う選択肢: AE
AE https://aws.amazon.com/blogs/mt/org-aggregator-delegated-admin/ A - When enabling trust - the service-linked role will be created but not the other way around. E - the delegated account will be the account that manages AWS config so it should collect all data centrally.
👍 2asfsdfsdf2023/04/18 - 正解だと思う選択肢: AE👍 1Dimidrol2023/04/06
シャッフルモード