A Developer uses AWS CodeDeploy to automate application deployment that connects to an external MySQL database. The Developer wants to securely access the encrypted secrets, such as API keys and database passwords. Which of the following solutions would involve the LEAST administrative effort?
A) Save the secrets in Amazon S3 with AWS KMS server-side encryption, and use a signed URL to access them by using the IAM role from Amazon EC2 instances.
B) Use the instance metadata to store the secrets and to programmatically access the secrets from EC2 instances.
C) Use the Amazon DynamoDB client-side encryption library to save the secrets in DynamoDB and to programmatically access the secrets from EC2 instances.
D) Use AWS SSM Parameter Store to store the secrets and to programmatically access them by using the IAM role from EC2 instances.
Correct Answer:
Verified
Q186: A company is using AWS CodePipeline to
Q187: An application displays a status dashboard. The
Q188: An application is running on an EC2
Q189: A company is building an application to
Q190: An organization is using Amazon CloudFront to
Q192: A social media company is using Amazon
Q193: A Developer will be using the AWS
Q194: An application is using Amazon DynamoDB as
Q195: According to best practice, how should access
Q196: A Developer is using AWS CLI, but
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents