試験科目:AWS Certified SysOps Administrator - Associate
NO.1 A user has configured ELB with Auto Scaling. The user suspended the Auto Scaling
AlarmNotification which notifies Auto Scaling for CloudWatch alarms. process for a while. What will
Auto Scaling do during this period?
A. AWS will not receive the alarms from CloudWatch
B. AWS will receive the alarms but will not execute the Auto Scaling policy
C. Auto Scaling will execute the policy but it will not launch the instances until the process is resumed
D. It is not possible to suspend the AlarmNotification process
Answer: B

AWS-SysOps 時間   
Auto Scaling performs various processes, such as Launch, Terminate AlarmNotification etc. The user
can also suspend individual process. The AlarmNotification process type accepts notifications from
the Amazon CloudWatch alarms that are associated with the Auto Scaling group. If the user suspends
this process type, Auto Scaling will not automatically execute the scaling policies that would be
triggered by the alarms.

NO.2 A user has launched an EC2 instance and deployed a production application in it. The user
wants to prohibit any mistakes from the production team to avoid accidental termination. How can
the user achieve this?
A. The user can set the Deletion termination flag to avoid accidental termination
B. It is not possible to avoid accidental termination
C. The usercan the set DisableApiTermination attribute to avoid accidental termination
D. The user can set the InstanceInitiatedShutdownBehavior flag to avoid accidental termination
Answer: C

AWS-SysOps 学習   AWS-SysOps ソフト   
It is always possible that someone can terminate an EC2 instance using the Amazon EC2 console,
command line interface or API by mistake. If the admin wants to prevent the instancefrom being
accidentally terminated, he can enable termination protection for that instance. The
DisableApiTermination attribute controls whether the instance can be terminated using the console,
CLI or API. By default, termination protection is disabled for an EC2 instance. When it is set it will not
allow the user to terminate the instance from CLI, API or the console.

NO.3 An organization is generating digital policy files which are required by the admins for
verification. Once the files are verified they may not be required in the future unless there is some
compliance issue. If the organization wants to save them in a cost effective way, which is the best
possible solution?
A. AWS Glacier
Answer: A

AWS-SysOps 一番   
Amazon S3 stores objects according to their storage class. There are three major storage classes:
Standard, Reduced Redundancy and Glacier. Standard is for AWS S3 and provides veryhigh
durability.However, the costs are a little higher. Reduced redundancy is for less critical files. Glacier is
for archival and the files which are accessed infrequently. It is an extremely low-cost storage service
that provides secure and durable storage for data archiving and backup.

NO.4 A user has configured a VPC with a new subnet. The user has created a security group. The
user wants to configure that instances of the same subnet communicate with each other. How can
the user configure this with the security group?
A. Configure the security group itself as the source and allow traffic on all the protocols and ports
B. There is no need for a security group modification as all the instances can communicate with each
other inside the same subnet
C. Configure the subnet as the sourcein the security group and allow traffic on all the protocols and
D. The user has to use VPC peering to configure this
Answer: A

AWS-SysOps ソフト   
A Virtual Private Cloud (VPC. is a virtual network dedicated to the user's AWS account. AWS provides
two features that the user can use to increase security in VPC: security groups and network ACLs.
Security groups work at the instance level. If the user is using the default security group, it will have a
rule which allows the instances to communicate with other. For a new security group, the user has to
specify the rule, add it to define the source as the security group itself, and select all the protocols
and ports for that source.

