Examtopics

AWS Certified SysOps Administrator - Associate
  • Topic 1 Question 53

    A compliance team requires all administrator passwords for Amazon RDS DB instances to be changed at least annually. Which solution meets this requirement in the MOST operationally efficient manner?

    • Store the database credentials in AWS Secrets Manager. Configure automatic rotation for the secret every 365 days.

    • Store the database credentials as a parameter in the RDS parameter group. Create a database trigger to rotate the password every 365 days.

    • Store the database credentials in a private Amazon S3 bucket. Schedule an AWS Lambda function to generate a new set of credentials every 365 days.

    • Store the database credentials in AWS Systems Manager Parameter Store as a secure string parameter. Configure automatic rotation for the parameter every 365 days.


    シャッフルモード