Examtopics

AWS Certified SysOps Administrator - Associate
  • Topic 1 Question 212

    A company is storing backups in an Amazon S3 bucket. The backups must not be deleted for at least 3 months after the backups are created.

    What should a SysOps administrator do to meet this requirement?

    • Configure an IAM policy that denies the s3:DeleteObject action for all users. Three months after an object is written, remove the policy.

    • Enable S3 Object Lock on a new S3 bucket in compliance mode. Place all backups in the new S3 bucket with a retention period of 3 months.

    • Enable S3 Versioning on the existing S3 bucket. Configure S3 Lifecycle rules to protect the backups.

    • Enable S3 Object Lock on a new S3 bucket in governance mode. Place all backups in the new S3 bucket with a retention period of 3 months.


    シャッフルモード