A company is developing an application that will run on several Amazon EC2 instances in an Auto Scaling group and can access a database running on Amazon EC2. The application needs to store secrets required to connect to the database. The application must allow for periodic secret rotation, and there should be no changes to the application when a secret changes. What is the SAFEST way to meet these requirements?
A) Associate an IAM role to the EC2 instance where the application is running with permission to access the database.
B) Use AWS Systems Manager Parameter Store with the SecureString data type to store secrets. Use AWS Systems Manager Parameter Store with the SecureString data type to store secrets.
C) Configure the application to store secrets in Amazon S3 object metadata.
D) Hard code the database secrets in the application code itself.
Correct Answer:
Verified
Q202: An e-commerce site allows returning users to
Q203: An AWS Lambda function must read data
Q204: An e-commerce web application that shares session
Q205: A Developer is creating a mobile application
Q206: A company has a website that is
Q208: A company has three different environments: Development,
Q209: A Developer is creating a serverless website
Q210: A Developer needs to design an application
Q211: A company needs to secure its existing
Q212: An AWS Lambda function must access an
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents