A SysOps Administrator must ensure all Amazon EBS volumes currently in use, and those created in the future, are encrypted with a specific AWS KMS customer master key (CMK) . What is the MOST efficient way for the Administrator to meet this requirement?
A) Create an AWS Lambda function to run on a daily schedule, and have the function run the aws ec2 describe-volumes --filters encrypted command. Create an AWS Lambda function to run on a daily schedule, and have the function run the aws ec2 describe-volumes --filters encrypted command.
B) Within AWS Config, configure the encrypted-volumes managed rule and specify the key ID of the CMK.
C) Log in to the AWS Management Console on a daily schedule, then filter the list of volumes by encryption status, then export this list.
D) Create an AWS Lambda function to run on a daily schedule, and have the function run the aws kms describe-key command. aws kms describe-key command.
Correct Answer:
Verified
Q857: In IAM, can you attach more than
Q858: Which of the following services is offered
Q859: A user has created a VPC with
Q860: Network ACLs are _.
A) stateful
B) stateless
C) asynchronous
D)
Q861: A Development team is designing an application
Q863: Your VPC automatically comes with a modifiable
Q864: You have a business-to-business web application running
Q865: A company's website went down for several
Q866: A user has created an S3 bucket
Q867: A user has recently started using EC2.
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents