Q228. A company is in the process of implementing AWS Organizations to constrain its Developers to use only Amazon EC2 Amazon S3and Amazon DynamoDB. The Developers account resides in a dedicated organizational unit (OU). The So

欢迎免费使用小程序搜题/刷题/查看解析,提升学历,成考自考报名,论文代写、论文查重请加客服微信skr-web


Q228. A company is in the process of implementing AWS Organizations to constrain its Developers to use only Amazon EC2 Amazon S3and Amazon DynamoDB. The Developers account resides in a dedicated organizational unit (OU). The Solutions Architect has implemented the following SCP on the Developers account: When this policy is deployed. IAM users in the Developers account are still able to use AWS services that are not listed in the policy? What should the solutions Architect do to eliminate the developers' ability to use services outside the scope of this poll.

A.Create an explicit deny statement for each AWS service that should be constrained
B.Remove the FullAWSAccess SCP from the Developer account's OU
C.Modify the FullAWSAccess SCP to explicitly deny all services
D.Add an explicit deny statement using a wildcard to the end of the SCP.
正确答案B
访客
邮箱
网址

通用的占位符缩略图

人工智能机器人,扫码免费帮你完成工作


  • 自动写文案
  • 自动写小说
  • 马上扫码让Ai帮你完成工作
通用的占位符缩略图

人工智能机器人,扫码免费帮你完成工作

  • 自动写论文
  • 自动写软件
  • 我不是人,但是我比人更聪明,我是强大的Ai
Top