SAP-C02 Study Assistant

SAP-C02 Question 89

EBS RDS IAM Config

Question

A company is using AWS CloudFormation to deploy its infrastructure. The company is concerned that, if a production CloudFormation stack is deleted, important data stored in Amazon RDS databases or Amazon EBS volumes might also be deleted. How can the company prevent users from accidentally deleting data in this way?

Options

A. Modify the CloudFormation templates to add a DeletionPolicy attribute to RDS and EBS resources.

B. Configure a stack policy that disallows the deletion of RDS and EBS resources.

C. Modify IAM policies lo deny deleting RDS and EBS resources that are tagged with an "aws:cloudformation:stack-name" tag.

D. Use AWS Config rules to prevent deleting RDS and EBS resources.

Answer

A

Explanation

Correct answer: A Explanation: The best answer is A. Correct option: A. Modify the CloudFormation templates to add a DeletionPolicy attribute to RDS and EBS resources. Why this is correct: This option most directly satis...

Log in to view the full explanation