Multiple Choice
A customer is deploying an SSL enabled web application to AWS and would like to implement a separation of roles between the EC2 service administrators that are entitled to login to instances as well as making API calls and the security officers who will maintain and have exclusive access to the application's X.509 certificate that contains the private key.
A) Upload the certificate on an S3 bucket owned by the security officers and accessible only by EC2 Role of the web servers.
B) Configure the web servers to retrieve the certificate upon boot from an CloudHSM is managed by the security officers.
C) Configure system permissions on the web servers to restrict access to the certificate only to the authority security officers
D) Configure IAM policies authorizing access to the certificate store only to the security officers and terminate SSL on an ELB.
Correct Answer:

Verified
Correct Answer:
Verified
Q744: An organization is planning to host a
Q745: An enterprise runs 103 line-of-business applications on
Q746: A company had a tight deadline to
Q747: A company is moving a business-critical application
Q748: Out of the striping options available for
Q750: A user has configured two security groups
Q751: A company has developed a new release
Q752: Your application is using an ELB in
Q753: A Solutions Architect is responsible for redesigning
Q754: What does elasticity mean to AWS?<br>A) The