AWS Certified Cloud Practitioner CLF-C01 – Question050

A company recently deployed an Amazon RDS instance in its VPC. The company needs to implement a stateful firewall to limit traffic to the private corporate network.
Which AWS service or feature should the company use to limit network traffic directly to its RDS instance?

A.
Network ACLs
B. Security groups
C. AWS WAF
D. Amazon GuardDuty

Correct Answer: C

AWS Certified Cloud Practitioner CLF-C01 – Question049

A company is using the AWS Free Tier for several AWS services for an application.
What will happen if the Free Tier usage period expires or if the application use exceeds the Free Tier usage limits?

A.
The company will be charged the standard pay-as-you-go service rates for the usage that exceeds the Free Tier usage.
B. AWS Support will contact the company to set up standard service charges.
C. The company will be charged for the services it consumed during the Free Tier period, plus additional charges for service consumption after the Free Tier period.
D. The company's AWS account will be frozen and can be restarted after a payment plan is established.

Correct Answer: A

AWS Certified Cloud Practitioner CLF-C01 – Question046

A company wants to run production workloads on AWS. The company needs concierge service, a designated AWS technical account manager (TAM), and technical support that is available 24 hours a day, 7 days a week.
Which AWS Support plan will meet these requirements?

A.
AWS Basic Support
B. AWS Enterprise Support
C. AWS Business Support
D. AWS Developer Support

Correct Answer: B

AWS Certified Cloud Practitioner CLF-C01 – Question043

A company has designed its AWS Cloud infrastructure to run its workloads effectively. The company also has protocols in place to continuously improve supporting processes.
Which pillar of the AWS Well-Architected Framework does this scenario represent?

A.
Security
B. Performance efficiency
C. Cost optimization
D. Operational excellence

Correct Answer: D

AWS Certified Cloud Practitioner CLF-C01 – Question042

Which of the following are features of network ACLs as they are used in the AWS Cloud? (Choose two.)

A.
They are stateless.
B. They are stateful.
C. They evaluate all rules before allowing traffic.
D. They process rules in order, starting with the lowest numbered rule, when deciding whether to allow traffic.
E. They operate at the instance level.

Correct Answer: AD

AWS Certified Cloud Practitioner CLF-C01 – Question041

Which tasks are the responsibility of AWS, according to the AWS shared responsibility model? (Choose two.)

A.
Patch the Amazon EC2 guest operating system.
B. Upgrade the firmware of the network infrastructure.
C. Apply password rotation for IAM users.
D. Maintain the physical security of edge locations.
E. Maintain least privilege access to the root user account.

Correct Answer: BD