Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Amazon Exam DBS-C01 Topic 8 Question 90 Discussion

Actual exam question for Amazon's DBS-C01 exam
Question #: 90
Topic #: 8
[All DBS-C01 Questions]

A company is developing an application that performs intensive in-memory operations on advanced data structures such as sorted sets. The application requires sub-millisecond latency for reads and writes. The application occasionally must run a group of commands as an ACID-compliant operation. A database specialist is setting up the database for this application. The database specialist needs the ability to create a new database cluster from the latest backup of the production cluster.

Which type of cluster should the database specialist create to meet these requirements?

Show Suggested Answer Hide Answer
Suggested Answer: B, C

Contribute your Thoughts:

Tasia
9 months ago
Candidate 2: That's a good point. Setting a VPC endpoint policy to restrict access to only the application instance's security group adds an extra layer of security.
upvoted 0 times
...
Orville
10 months ago
Candidate 4: Creating an Amazon DocumentDB VPC endpoint also seems like a good idea to prevent traffic from the public endpoint.
upvoted 0 times
...
Marilynn
10 months ago
Candidate 1: Yeah, that combined with setting the security group of the cluster to only allow connections from the application instance's security group should secure the data.
upvoted 0 times
...
Salina
10 months ago
Candidate 3: Option E seems like a good choice. Activating encryption at rest with the modify-db-cluster command sounds like the right solution.
upvoted 0 times
...
Cletus
11 months ago
Candidate 2: I agree. It's crucial for ensuring the security of the data stored in Amazon DocumentDB.
upvoted 0 times
...
Theresia
11 months ago
Candidate 1: I think we should definitely enable encryption of data in transit and at rest.
upvoted 0 times
...
Suzan
12 months ago
Eliseo: We can activate encryption at rest using the modify-db-cluster command with the storage-encrypted parameter set to true.
upvoted 0 times
...
Eliseo
12 months ago
Krystal: Got it. And what about encrypting the data at rest in Amazon DocumentDB?
upvoted 0 times
...
Krystal
12 months ago
We need to update the application configuration to use the instance endpoint and run queries over SSH.
upvoted 0 times
...
Reed
12 months ago
What should we do to encrypt the traffic between the application and Amazon DocumentDB?
upvoted 0 times
Lashandra
12 months ago
D) Create an Amazon DocumentDB VPC endpoint to prevent the traffic from going to the Amazon DocumentDB public endpoint. Set a VPC endpoint policy to allow only the application instance's security group to connect.
upvoted 0 times
...
Ronnie
12 months ago
E) Activate encryption at rest using the modify-db-cluster command with the ---storage-encrypted parameter set to true. Set the security group of the cluster to allow only the application instance's security group to connect.
upvoted 0 times
...
...

Save Cancel