Examtopics

AWS Certified Security - Specialty
  • Topic 1 Question 111

    A security engineer is creating an AWS Lambda function. The Lambda function needs to use a role that is named LambdaAuditRole to assume a role that is named AcmeAuditFactoryRole in a different AWS account.

    When the code is processed, the following error message appears: "An error occurred (AccessDenied) when calling the AssumeRole operation."

    Which combination of steps should the security engineer take to resolve this error?

    2 つ選択
    • Ensure that LambdaAuditRole has the sts:AssumeRole permission for AcmeAuditFactoryRole.

    • Ensure that LambdaAuditRole has the AWSLambdaBasicExecutionRole managed policy attached.

    • Ensure that the trust policy for AcmeAuditFactoryRole allows the sts:AssumeRole action from LambdaAuditRole.

    • Ensure that the trust policy for LambdaAuditRole allows the sts:AssumeRole action from the lambda.amazonaws.com service.

    • Ensure that the sts:AssumeRole API call is being issued to the us-east-1 Region endpoint.


    シャッフルモード