A company is developing a new online game that will run on top of Amazon ECS. Four distinct Amazon ECS services will be part of the architecture, each requiring specific permissions to various AWS services. The company wants to optimize the use of the underlying Amazon EC2 instances by bin packing the containers based on memory reservation. Which configuration would allow the Development team to meet these requirements MOST securely?
A) Create a new Identity and Access Management (IAM) instance profile containing the required permissions for the various ECS services, then associate that instance role with the underlying EC2 instances.
B) Create four distinct IAM roles, each containing the required permissions for the associated ECS service, then configure each ECS service to reference the associated IAM role.
C) Create four distinct IAM roles, each containing the required permissions for the associated ECS service, then, create an IAM group and configure the ECS cluster to reference that group.
D) Create four distinct IAM roles, each containing the required permissions for the associated ECS service, then configure each ECS task definition to referen?e the associated IAM role.
Correct Answer:
Verified
Q178: A Developer must re-implement the business logic
Q179: A Developer must repeatedly and consistently deploy
Q180: A supplier is writing a new RESTful
Q181: An application running on an Amazon Linux
Q182: A company recently migrated its web, application
Q184: An application needs to use the IP
Q185: A Developer is creating a mobile application
Q186: A company is using AWS CodePipeline to
Q187: An application displays a status dashboard. The
Q188: An application is running on an EC2
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents