Q302.An AWS partners company it building a service in AWS Organizations using its organization named org1. This service requires the partner company to have access to AWS resources in a customer accountwhich is in a separate or

欢迎免费使用小程序搜题/刷题/查看解析,提升学历,成考自考报名,论文代写、论文查重请加客服微信skr-web


Q302.An AWS partners company it building a service in AWS Organizations using its organization named org1. This service requires the partner company to have access to AWS resources in a customer accountwhich is in a separate organization named org2.The company must establish least privilege security access using an API or command line foot to the customer account.What is the MOST secure way to allow org1 to access resources in org2?

A.The customer should provide the partner company with their AWS account access keys to log in and perform the required tasks.
B.The customer should create an IAM user and assign the required permissions to the IAM user. The customer should then provide the credentials to the partner company to log in and perform the required tasks.
C.The customer should create an IAM role and assign the required permissions to the IAM role. The partner company should then use the IAM role's Amazon Resource Name (ARN) when requesting access to perform the required tasks.
D.The customer should create an IAM role and assign the required permissions to the IAM role. The partner company should then use the IAM role's Amazon Resource Name (ARN) including the external ID in the IAM role's trust policy when requesting access to perform the required tasks.
正确答案D
访客
邮箱
网址

通用的占位符缩略图

人工智能机器人,扫码免费帮你完成工作


  • 自动写文案
  • 自动写小说
  • 马上扫码让Ai帮你完成工作
通用的占位符缩略图

人工智能机器人,扫码免费帮你完成工作

  • 自动写论文
  • 自动写软件
  • 我不是人,但是我比人更聪明,我是强大的Ai
Top