Q1) What Is AWS?
Q1) What Is AWS?
Q1) What Is AWS?
Answer:AWS stands for Amazon Web Services. AWS is a platform that provides on-demand
resources for hosting web services, storage, networking, databases and other resources over
the internet with a pay-as-you-go pricing.
• Reserved
• Spot
• Scheduled
• Dedicated
• Provisioned IOPS
• Magnetic
• Cold HDD
• Throughput optimized
• General purpose
• Computer Optimized
• Storage Optimized
• Memory Optimized
• Accelerated Computing
Q12)What is an AMI?
Answer: AMI stands for Amazon Machine Image. AMI is a template that contains the software
configurations, launch permission and a block device mapping that specifies the volume to
attach to the instance when it is launched.
Q13) What is an EIP?
Answer: EIP stands for Elastic IP address. It is designed for dynamic cloud computing. When you
want to have a static IP address for your instances when you stop and restart your instances,
you will be using EIP address.
Q16) What are the cloudwatch metrics that are available for EC2 instances?
Answer: Diskreads, Diskwrites, CPU utilization, networkpacketsIn, networkpacketsOut,
networkIn, networkOut, CPUCreditUsage, CPUCreditBalance.
Q17) What is the minimum and maximum size of individual objects that you can
store in S3
Answer: The minimum size of individual objects that you can store in S3 is 0 bytes and the
maximum bytes that you can store for individual objects is 5TB.
• Storage management
• Data transfer
• Transfer acceleration
Q24) What is the pre-requisite to work with Cross region replication in S3?
Answer: You need to enable versioning on both source bucket and destination to work with
cross region replication. Also both the source and destination bucket should be in different
region.
Q26) What are policies and what are the types of policies?
Answer: Policies are permissions that you can attach to the users that you create. These policies
will contain that access that you have provided to the users that you have created. There are 2
types of policies.
• Managed policies
• Inline policies
Q29) What is the maximum individual archive that you can store in glacier?
Answer: You can store a maximum individual archive of upto 40 TB.
VPC.
Q34) What are the different types of storage gateway?
Answer: Following are the types of storage gateway.
• File gateway
• Volume gateway
• Tape gateway
• Oracle
• MYSQL server
• Postgresql
• MariaDB
• SQL server
• Simple routing
• Latency routing
• Failover routing
• Geolocation routing
• Weighted routing
• Multivalue answer
Evaluates all rules before allowing the Rules are processed in order number
traffic when allowing traffic.
Q47) What are the two types of access that you can provide when you are
creating users?
Answer: Following are the two types of access that you can create.
• Programmatic access
• Console access
Q48) What are the benefits of auto scaling?
Answer: Following are the benefits of auto scaling
• Better fault tolerance
• Better availability
• Better cost management
Q51)What is the difference between the classic load balancer and application
load balancer?
Answer: Dynamic port mapping, multiple port multiple listeners is used in Application Load
Balancer, One port one listener is achieved via Classic Load Balancer
Q58) When I try to launch an ec2 instance i am getting Service limit exceed, how
to fix the issue?
Answer: By default AWS offer service limit of 20 running instances per region, to fix the issue
we need to contact AWS support to increase the limit based on the requirement
Q59) I need to modify the ebs volumes in Linux and windows is it possible
Answer: yes its possible from console use modify volumes in section give the size u need then
for windows go to disk management for Linux mount it to achieve the modification
Q61) What is meant by parameter groups in rds. And what is the use of it?
Answer: Since RDS is a managed service AWS offers a wide set of parameter in RDS as
parameter group which is modified as per requirement
Q62) What is the use of tags and how they are useful?
Answer: Tags are used for identification and grouping AWS Resources
Q63) I am viewing an AWS Console but unable to launch the instance, I receive an
IAM Error how can I rectify it?
Answer: As AWS user I don’t have access to use it, I need to have permissions to use it further
Q64) I don’t want my AWS Account id to be exposed to users how can I avoid it?
Answer: In IAM console there is option as sign in url where I can rename my own account name
with AWS account
Q66) You are enabled sticky session with ELB. What does it do with your
instance?
Answer: Binds the user session with a specific instance
Q67) Which type of load balancer makes routing decisions at either the transport
layer or the
Application layer and supports either EC2 or VPC.
Answer: Classic Load Balancer
Q68) Which is virtual network interface that you can attach to an instance in a
VPC?
Answer: Elastic Network Interface
Q69) You have launched a Linux instance in AWS EC2. While configuring security
group, you
Have selected SSH, HTTP, HTTPS protocol. Why do we need to select SSH?
Answer: To verify that there is a rule that allows traffic from EC2 Instance to your computer
Q70) You have chosen a windows instance with Classic and you want to make
some change to the
Security group. How will these changes be effective?
Q71) Load Balancer and DNS service comes under which type of cloud service?
Answer: IAAS-Storage
Q72) You have an EC2 instance that has an unencrypted volume. You want to
create another
Encrypted volume from this unencrypted volume. Which of the following steps
can achieve this?
Answer: Create a snapshot of the unencrypted volume (applying encryption parameters),
copy the. Snapshot and create a volume from the copied snapshot
Q73) Where does the user specify the maximum number of instances with the
auto scaling Commands?
Answer: Auto scaling Launch Config
Q74) Which are the types of AMI provided by AWS?
Answer: Instance Store backed, EBS Backed
Q75) After configuring ELB, you need to ensure that the user requests are always
attached to a Single instance. What setting can you use?
Answer: Sticky session
Q76) When do I prefer to Provisioned IOPS over the Standard RDS storage?
Answer:If you have do batch-oriented is workloads.
Q78) Which the AWS services will you use to the collect and the process e-
commerce data for the near by real-time analysis?
Answer: Good of Amazon DynamoDB.
Q79) A company is deploying the new two-tier an web application in AWS. The
company has to limited on staff and the requires high availability, and the
application requires to complex queries and table joins. Which configuration
provides to the solution for company’s requirements?
Answer: An web application provide on Amazon DynamoDB solution.
Q80) Which the statement use to cases are suitable for Amazon DynamoDB?
Answer:The storing metadata for the Amazon S3 objects& The Running of relational joins and
complex an updates.
Q81) Your application has to the retrieve on data from your user’s mobile take every 5 minutes
and then data is stored in the DynamoDB, later every day at the particular time the data is an
extracted into S3 on a per user basis and then your application is later on used to visualize the
data to user. You are the asked to the optimize the architecture of the backend system can to
lower cost, what would you recommend do?
Answer: Introduce Amazon Elasticache to the cache reads from the Amazon DynamoDB table
and to reduce the provisioned read throughput.
Q82) You are running to website on EC2 instances can deployed across multiple Availability
Zones with an Multi-AZ RDS MySQL Extra Large DB Instance etc. Then site performs a high
number of the small reads and the write per second and the relies on the eventual consistency
model. After the comprehensive tests you discover to that there is read contention on RDS
MySQL. Which is the best approaches to the meet these requirements?
Answer:The Deploy Elasti Cache in-memory cache is running in each availability zone and Then
Increase the RDS MySQL Instance size and the Implement provisioned IOPS.
Q83) An startup is running to a pilot deployment of around 100 sensors to the measure street
noise and The air quality is urban areas for the 3 months. It was noted that every month to
around the 4GB of sensor data are generated. The company uses to a load balanced take auto
scaled layer of the EC2 instances and a RDS database with a 500 GB standard storage. The pilot
was success and now they want to the deploy take atleast 100K sensors.let which to need the
supported by backend. You need to the stored data for at least 2 years to an analyze it. Which
setup of following would you be prefer?
Answer: The Replace the RDS instance with an 6 node Redshift cluster with take 96TB of
storage.
Q84) Let to Suppose you have an application where do you have to render images and also do
some of general computing. which service will be best fit your need?
Answer:Used on Application Load Balancer.
Q85) How will change the instance give type for the instances, which are the running in your
applications tier and Then using Auto Scaling. Where will you change it from areas?
Answer: Changed to Auto Scaling launch configuration areas.
Q86) You have an content management system running on the Amazon EC2 instance that is the
approaching 100% CPU of utilization. Which option will be reduce load on the Amazon EC2
instance?
Answer: Let Create a load balancer, and Give register the Amazon EC2 instance with it.
Q87) What does the Connection of draining do?
Answer: The re-routes traffic from the instances which are to be updated (or) failed an health
to check.
Q88) When the instance is an unhealthy, it is do terminated and replaced with an new ones,
which of the services does that?
Q94) Which of the services to you would not use to deploy an app?
Answer: Lambda app not used on deploy.
Q95) How do the Elastic Beanstalk can apply to updates?
Answer: By a duplicate ready with a updates prepare before swapping.
Q96) An created a key in the oregon region to encrypt of my data in North Virginia region for
security purposes. I added to two users to the key and the external AWS accounts. I wanted to
encrypt an the object in S3, so when I was tried, then key that I just created is not listed.What
could be reason&solution?
Q100) You have an application are running on EC2 Instance, which will allow users to download
the files from a private S3 bucket using the pre-assigned URL. Before generating to URL the
Q101) application should be verify the existence of file in S3. How do the application use the
AWS credentials to access S3 bucket securely?
Answer:An Create an IAM role for the EC2 that allows list access to objects in S3 buckets.
Launch to instance with this role, and retrieve an role’s credentials from EC2 Instance make
metadata.
Q101) You use the Amazon CloudWatch as your primary monitoring system
for web application. After a recent to software deployment, your users are to getting
Intermittent the 500 Internal Server to the Errors, when you using web application. You want to
create the CloudWatch alarm, and notify the on-call engineer let when these occur. How can
you accomplish the using the AWS services?
Answer: An Create a CloudWatch get Logs to group and A define metric filters that assure
capture 500 Internal Servers should be Errors. Set a CloudWatch alarm on the metric and By
Use of Amazon Simple to create a Notification Service to notify an the on-call engineers
when prepare CloudWatch alarm is triggered.
Q102) You are designing a multi-platform of web application for the AWS. The application will
run on the EC2 instances and Till will be accessed from PCs, tablets and smart phones.Then
Supported accessing a platforms are Windows, MACOS, IOS and Android. They Separate sticky
sessions and SSL certificate took setups are required for the different platform types. Which do
describes the most cost effective and Like performance efficient the architecture setup?
Answer:Assign to multiple ELBs an EC2 instance or group of EC2 take instances running
to common component of the web application, one ELB change for each platform
type.Take Session will be stickiness and SSL termination are done for the ELBs.
Q103) You are migrating to legacy client-server application for AWS. The application responds
to a specific DNS visible domain (e.g. www.example.com) and server 2-tier architecture, with
multiple application for the servers and the database server. Remote clients use to TCP to
connect to the application of servers. The application servers need to know the IP address of
clients in order to the function of properly and are currently taking of that information
from TCP socket. A Multi-AZ RDS MySQL instance to will be used for database. During the
migration you change the application code but you have file a change request. How do would
you implement the architecture on the AWS in order to maximize scalability and high
availability?
Answer: File a change request to get implement of Proxy Protocol support in the application.
Use of ELB with TCP Listener and A Proxy Protocol enabled to distribute the load on two
application servers in the different AZs.
Q104) Your application currently is leverages AWS Auto Scaling to the grow and shrink as a load
Increases/decreases and has been performing as well. Your marketing a team expects
and steady ramp up in traffic to follow an upcoming campaign that will result in 20x growth in
the traffic over 4 weeks. Your forecast for approximate number of the Amazon EC2 instances
necessary to meet peak demand is 175. What should be you do avoid potential service
disruptions during the ramp up traffic?
Answer: Check the service limits in the Trusted Advisors and adjust as necessary, so that
forecasted count remains within the limits.
Q105) You have a web application running on the six Amazon EC2 instances, consuming about
45% of resources on the each instance. You are using the auto-scaling to make sure that a six
instances are running at all times. The number of requests this application processes to
consistent and does not experience to spikes. Then application are critical to your business and
you want to high availability for at all times. You want to the load be distributed evenly has
between all instances. You also want to between use same Amazon Machine Image (AMI) for all
instances. Which are architectural choices should you make?
Answer: Deploy to 3 EC2 instances in one of availability zone and 3 in another availability of
zones and to use of Amazon Elastic is Load Balancer.
Q106) You are the designing an application that a contains protected health information.
Security and Then compliance requirements for your application mandate that all protected to
health information in application use to encryption at rest and in the transit module. The
application to uses an three-tier architecture. where should data flows through the load
balancers and is stored on the Amazon EBS volumes for the processing, and the results are
stored in the Amazon S3 using a AWS SDK. Which of the options satisfy the security
requirements?
Answer: Use TCP load balancing on load balancer system, SSL termination on Amazon to create
EC2 instances, OS-level disk take encryption on Amazon EBS volumes, and The amazon S3 with
server-side to encryption and Use the SSL termination on load balancers, an SSL listener on the
Amazon to create EC2 instances, Amazon EBS encryption on the EBS volumes containing the
PHI, and Amazon S3 with a server-side of encryption.
Q107) An startup deploys its create photo-sharing site in a VPC. An elastic load balancer
distributes to web traffic across two the subnets. Then the load balancer session to stickiness is
configured to use of AWS-generated session cookie, with a session TTL of the 5 minutes. The
web server to change Auto Scaling group is configured as like min-size=4, max-size=4. The
startup is the preparing for a public launchs, by running the load-testing software installed on
the single Amazon Elastic Compute Cloud (EC2) instance to running in us-west-2a. After 60
minutes of load-testing, the web server logs of show the following:WEBSERVER LOGS | # of
HTTP requests to from load-tester system | # of HTTP requests to from private on beta users ||
webserver #1 (subnet an us-west-2a): | 19,210 | 434 | webserver #2 (subnet an us-west-2a): |
21,790 | 490 || webserver #3 (subnet an us-west-2b): | 0 | 410 || webserver #4 (subnet an us-
west-2b): | 0 | 428 |Which as recommendations can be help of ensure that load-testing HTTP
requests are will evenly distributed across to four web servers?
Answer:Result of cloud is re-configure the load-testing software to the re-resolve DNS for each
web request.
Q108) To serve the Web traffic for a popular product to your chief financial officer and IT
director have purchased 10 m1.large heavy utilization of Reserved Instances (RIs) evenly put
spread across two availability zones: Route 53 are used to deliver the traffic to on Elastic Load
Balancer (ELB). After the several months, the product grows to even more popular and you
need to additional capacity As a result, your company that purchases two c3.2xlarge medium
utilization RIs You take register the two c3.2xlarge instances on with your ELB and quickly find
that the ml of large instances at 100% of capacity and the c3.2xlarge instances have significant
to capacity that’s can unused Which option is the most of cost effective and uses EC2 capacity
most of effectively?
Answer: To use a separate ELB for the each instance type and the distribute load to ELBs with a
Route 53 weighted round of robin.
Q109) An AWS customer are deploying an web application that is the composed of a front-end
running on the Amazon EC2 and confidential data that are stored on the Amazon S3. The
customer security policy is that all accessing operations to this sensitive data
must authenticated and authorized by centralized access to management system that is
operated by separate security team. In addition, the web application team that be owns and
administers the EC2 web front-end instances are prohibited from having the any ability to
access data that circumvents this centralized access to management system. Which are
configurations will support these requirements?
Answer:The configure to the web application get authenticate end-users against the centralized
access on the management system. Have a web application provision trusted to users STS
tokens an entitling the download of the approved data directly from a Amazon S3.
Q110) A Enterprise customer is starting on their migration to the cloud, their main reason for
the migrating is agility and they want to the make their internal Microsoft active directory
available to the many applications running on AWS, this is so internal users for only have to
remember one set of the credentials and as a central point of user take control for the leavers
and joiners. How could they make their actions the directory secures and the highly available
with minimal on-premises on infrastructure changes in the most cost and the time-
efficient way?
Answer: By Using a VPC, they could be create an the extension to their data center
and to make use of resilient hardware IPSEC on tunnels, they could then have two domain
consider to controller instances that are joined to the existing domain and reside within the
different subnets in the different availability zones.
• Hybrid cloud
• Community cloud 4
PAAS (Platform as a Service): It provides platform and environment to allow developers to build
applications. It frees developers without going into the complexity of building and maintaining
the infrastructure. (Ex: AWS Elastic Beanstalk, Windows Azure)
IAAS (Infrastructure as a Service): It provides virtualized computing resources over the internet
like cpu, memory, switches, routers, firewall, Dns, Load balancer (Ex: Azure, AWS)
• High Availability
• Increase speed and Agility
• Go global in Minutes
Q116)What is AWS?
Answer: Amazon web service is a secure cloud services platform offering compute, power,
database, storage, content delivery and other functionality to help business scale and grow.
AWS is fully on-demand
Benefits:
• Easier and Faster
• Elastic and Scalable
• High Availability
• Cost-Effective
• Public IP: A launched instance may also have a public ip address This IP address assigned
from the address reserved by AWS and cannot be specified.
• Elastic IP: An Elastic IP Address is an address unique on the internet that you reserve
independently and associate with Amazon EC2 instance. This IP Address persists until
the customer release it and is not tried to
Q129)What is EBS?
Answer:Amazon EBS Provides persistent block level storage volumes for use with Amazon EC2
instances. Amazon EBS volume is automatically replicated with its availability zone to protect
component failure offering high availability and durability. Amazon EBS volumes are available in
a variety of types that differ in performance characteristics and Price.
EBS Volume size: 500 GB to 16 TB Maximum IOPS: 200 IOPS Maximum throughput: 250 MB
Throughput-Optimized HDD: Throughput-optimized HDD volumes are low cost HDD volumes
designed for frequent access, throughput-intensive workloads such as big data, data
warehouse.
EBS Volume size: 500 GB to 16 TB Maximum IOPS: 500 IOPS Maximum throughput: 500 MB
• Bucket names can contain upto 63 lowercase letters, numbers, hyphens and
• You can create and use multiple buckets
• You can have upto 100 per account by
Q139)What are the storage class available in Amazon s3?
Answer:
• Amazon S3 Standard
• Amazon S3 Standard-Infrequent Access
• Amazon S3 Reduced Redundancy Storage
• Amazon Glacier
• Scheduled Scaling
• Dynamic Scaling
Basic Monitoring: Basic monitoring sends data points to Amazon cloud watch every five
minutes for a limited number of preselected metrics at no charge.
Detailed Monitoring: Detailed monitoring sends data points to amazon CloudWatch every
minute and allows data aggregation for an additional charge.
• Failover
• Geolocation
• High Performance
• Scalable Caching Environment
• Using Memcached or Redis Cache Engine
SNS (Simple Notification Service): SNS is a web service that coordinates and manages the
delivery or sending of messages to recipients.
Q160)How To Use Amazon Sqs? What Is Aws?
Answer:Amazon Web Services is a secure cloud services stage, offering compute power,
database storage, content delivery and other functionality to help industries scale and grow.
Flexibility. Cloud computing agrees your workers to be more flexible – both in and out of the
workplace. Workers can access files using web-enabled devices such as smartphones, laptops
and notebooks. In this way, cloud computing empowers the use of mobile technology.
One of the key assistances of using cloud computing is its scalability. Cloud computing allows
your business to easily expensive or downscale your IT requests as and when required. For
example, most cloud service workers will allow you to increase your existing resources to
accommodate increased business needs or changes. This will allow you to support your
commercial growth without exclusive changes to your present IT systems.
*Configure an EC2 example and its attached EBS volumes in the exact way you want them
created in the custom AMI.
1. Log out of your instance, but do not stop or terminate it.
2. Log in to the AWS Management Console, display the EC2 page for your region, then click
Instances.
3. Choose the instance from which you want to create a custom AMI.
4. Click Actions and click Create Image.
5. Type a name for Image Name that is easily identifiable to you and, optionally, input text
for Image Description.
Q177)What is the best approach to anchor information for conveying in the cloud
?
Answer:Backup Data Locally. A standout amongst the most vital interesting points while
overseeing information is to guarantee that you have reinforcements for your information,
• Avoid Storing Sensitive Information. …
• Use Cloud Services that Encrypt Data. …
• Encrypt Your Data. …
Personality and Access Management (IAM): IAM gives enhanced character and security the
board for AWS account.
Versatile Compute Cloud (EC2): EC2 is an AWS biological community focal piece. It is in charge
of giving on-request and adaptable processing assets with a “pay as you go” estimating model.
Flexible Block Store (EBS): EBS offers consistent capacity arrangement that can be found in
occurrences as a customary hard drive.
CloudWatch: CloudWatch enables the controller to viewpoint and accumulate key
measurements and furthermore set a progression of cautions to be advised if there is any
inconvenience.
This is among habitually asked AWS engineer inquiries questions. Simply find the questioner
psyche and solution appropriately either with parts name or with the portrayal alongside.
Q190)I’m not catching your meaning by AMI? What does it incorporate?
Answer:You may run over at least one AMI related AWS engineer inquiries amid your AWS
designer meet. Along these lines, set yourself up with a decent learning of AMI.
AMI represents the term Amazon Machine Image. It’s an AWS format which gives the data (an
application server, and working framework, and applications) required to play out the dispatch
of an occasion. This AMI is the duplicate of the AMI that is running in the cloud as a virtual
server. You can dispatch occurrences from the same number of various AMIs as you require.
AMI comprises of the followings:
A pull volume format for a current example
Launch authorizations to figure out which AWS records will inspire the AMI so as to dispatch
the occasions
Mapping for square gadget to compute the aggregate volume that will be appended to the
example at the season of dispatch
This is one of the normal AWS engineer inquiries questions. In the event that the questioner is
hoping to find a definite solution from you, clarify the system for vertical scaling.
Amazon EC2
The significance of S3 is Simple Storage Service. The importance of EC2 is Elastic Compute
Cloud.
It is only an information stockpiling administration which is utilized to store huge paired files. It
is a cloud web benefit which is utilized to have the application made.
It isn’t required to run a server. It is sufficient to run a server.
It has a REST interface and utilizations secure HMAC-SHA1 validation keys. It is much the same
as a tremendous PC machine which can deal with application like Python, PHP, Apache and
some other database.
When you are going for an AWS designer meet, set yourself up with the ideas of Amazon S3
and EC2, and the distinction between them.
• Adding Storage
Amazon EC2 is the basic subject you may run over while experiencing AWS engineer inquiries
questions. Get a careful learning of the EC2 occurrence and all the capacity alternatives for the
EC2 case.
Q195)What are the security best practices for Amazon Ec2 examples?
Answer:There are various accepted procedures for anchoring Amazon EC2 occurrences that are
pertinent whether occasions are running on-preface server farms or on virtual machines. How
about we view some broad prescribed procedures:
Minimum Access: Make beyond any doubt that your EC2 example has controlled access to the
case and in addition to the system. Offer access specialists just to the confided in substances.
Slightest Privilege: Follow the vital guideline of minimum benefit for cases and clients to play
out the capacities. Produce jobs with confined access for the occurrences.
Setup Management: Consider each EC2 occasion a design thing and use AWS arrangement the
executives administrations to have a pattern for the setup of the occurrences as these
administrations incorporate refreshed enemy of infection programming, security highlights and
so forth.
Whatever be the activity job, you may go over security based AWS inquiries questions. Along
these lines, motivate arranged with this inquiry to break the AWS designer meet.
Q196)Clarify the highlights of Amazon EC2 administrations.
Answer:Amazon EC2 administrations have following highlights:
• Virtual Computing Environments
• Proffers Persistent capacity volumes
• Firewall approving you to indicate the convention
• Pre-designed layouts
• Static IP address for dynamic Cloud Computing
At the season of ending an Amazon EC2 case, a shutdown is performed in an ordinary way.
Amid this, the erasure of the majority of the Amazon EBS volumes is performed. To stay away
from this, the estimation of credit deleteOnTermination is set to false. On end, the occurrence
additionally experiences cancellation, so the case can’t be begun once more.
Q203)What are IAM Roles and Policies, What is the difference between IAM Roles
and Policies.
Answer:Roles are for AWS services, Where we can assign permission of some AWS service to
other Service.
Q206) How do you access the Ec2 which has private IP which is in private Subnet ?
Answer: We can access using VPN if the VPN is configured into that Particular VPC where Ec2 is
assigned to that VPC in the Subnet. We can access using other Ec2 which has the Public access.
Q207)We have a custom VPC Configured and MYSQL Database server which is in
Private Subnet and we need to update the MYSQL Database Server, What are
the Option to do so.
Answer:By using NAT Gateway in the VPC or Launch a NAT Instance ( Ec2) Configure or Attach
the NAT Gateway in Public Subnet ( Which has Route Table attached to IGW) and attach it to
the Route Table which is Already attached to the Private Subnet.
Q208) What are the Difference Between Security Groups and Network ACL
Answer:
One more routing policy is Failover Routing policy. we set up a health check to monitor your
application endpoints. If one of the endpoints is not available, Route 53 will automatically
forward the traffic to other endpoint.
Elastic Load Balancing
ELB automatically scales depends on the demand, so sizing of the load balancers to handle
more traffic effectively when it is not required.
• Postgre DB
• Oracle DB
Q211)What is Status Checks in AWS Ec2?
Answer: System Status Checks – System Status checks will look into problems with instance
which needs AWS help to resolve the issue. When we see system status check failure, you can
wait for AWS to resolve the issue, or do it by our self.
• Network connectivity
• System power
• Software issues Data Centre’s
• Hardware issues
• Instance Status Checks – Instance Status checks will look into issues which need our
involvement to fix the issue. if status check fails, we can reboot that particular instance.
• Failed system status checks
• Memory Full
• Corrupted file system
• Kernel issues
• mkfs.ext4 /dev/xvdf
• Fdisk –l
• Mkdir /my5gbdata
• Mount /dev/xvdf /my5gbdata
Q221)How to add volume permanently with instance.
Answer:With each restart volume will get unmounted from instance, to keep this attached
need to perform below step
Cd /etc/fstab
/dev/xvdf /data ext4 defaults 0
Q222) What is the Difference between the Service Role and SAML Federated Role.
Answer: Service Role are meant for usage of AWS Services and based upon the policies
attached to it,it will have the scope to do its task. Example : In case of automation we can
create a service role and attached to it.
Federated Roles are meant for User Access and getting access to AWS as per designed role.
Example : We can have a federated role created for our office employee and corresponding to
that a Group will be created in the AD and user will be added to it.
Q228) What is the precedence level between explicit allow and explicit deny.
Answer: Explicit deny will always override Explicit Allow.
Q229) What is the benefit of creating a group in IAM.
Answer:Creation of Group makes the user management process much simpler and user with
the same kind of permission can be added in a group and at last addition of a policy will be
much simpler to the group in comparison to doing the same thing manually.
Q230)What is the difference between the Administrative Access and Power User
Access in term of pre-build policy.
Answer: Administrative Access will have the Full access to AWS resources. While Power User
Access will have the Admin access except the user/group management permission.
Answer:Yes
Q239)which service is used to distribute content to end user service using global
network of edge location?
Answer: Virtual Private Cloud
Q243)I have some private servers on my premises also i have distributed some of
My workload on the public cloud,what is the architecture called?
Answer:Virtual private cloud
Q246)which cloud model do Developers and organizations all around the world
leverage extensively?
Answer: IAAS-Infrastructure as a service.
Q247)Can cloud front serve content from a non AWS origin server?
Answer: No
Q249)Which AWS service will you use to collect and process ecommerce data for
near real time analysis?
Answer: Both Dynamo DB & Redshift
Q250)An high demand of IOPS performance is expected around 15000.Which EBS
volume type would you recommend?
Answer: Provisioned IOPS.