AWS Config Flashcards

(49 cards)

1
Q

What is AWS Config?

A

AWS Config is a service that enables you to assess, audit, and evaluate the configurations of your AWS resources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

True or False: AWS Config provides a detailed view of the configuration of AWS resources over time.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which AWS service is primarily used for compliance auditing?

A

AWS Config

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the main purpose of AWS Config Rules?

A

AWS Config Rules allow you to define guidelines for your AWS resource configurations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Fill in the blank: AWS Config tracks changes to resources and their configurations to provide __________.

A

resource compliance and auditing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are the key components of AWS Config architecture?

A

The key components are AWS Config service, configuration items, configuration history, and AWS Config rules.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

True or False: AWS Config can only track changes for EC2 instances.

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which AWS service can be integrated with AWS Config for notifications?

A

Amazon SNS (Simple Notification Service)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is a configuration item in AWS Config?

A

A configuration item is a record of a resource’s configuration, including its attributes and relationships.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How does AWS Config help with security compliance?

A

AWS Config helps with security compliance by continuously monitoring resource configurations and evaluating them against defined rules.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the use case of AWS Config in DevOps?

A

AWS Config can be used in DevOps to ensure that infrastructure adheres to compliance and best practices throughout the development lifecycle.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What feature allows AWS Config to record resource changes over time?

A

Configuration history

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

True or False: AWS Config supports resource types across all AWS services.

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which API can you use to interact with AWS Config?

A

AWS Config API

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is a remediation action in AWS Config?

A

A remediation action is a set of predefined steps that AWS Config can take to correct non-compliant resources.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What are the benefits of using AWS Config?

A

Benefits include continuous monitoring, compliance auditing, resource inventory management, and configuration change tracking.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Fill in the blank: AWS Config can be used to evaluate compliance against __________.

A

internal policies and industry standards

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

What type of data does AWS Config provide for resource configurations?

A

AWS Config provides both historical and current configuration data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

True or False: AWS Config can automatically remediate non-compliant resources.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

What feature allows users to visualize resource configurations and relationships in AWS Config?

A

AWS Config Console

21
Q

What types of reports can AWS Config generate?

A

AWS Config can generate compliance reports and configuration history reports.

22
Q

Which AWS service can AWS Config work with to automate compliance checks?

23
Q

What is the main function of AWS Config Aggregators?

A

AWS Config Aggregators allow you to aggregate and view resource configurations across multiple accounts and regions.

24
Q

True or False: AWS Config can only monitor resources in a single AWS region.

25
What does the AWS Config Dashboard provide?
The AWS Config Dashboard provides an overview of the compliance status and configuration history of AWS resources.
26
Fill in the blank: AWS Config integrates with __________ to provide notifications on configuration changes.
Amazon CloudWatch Events
27
How can organizations use AWS Config for auditing?
Organizations can use AWS Config to track changes, maintain a history of resource configurations, and evaluate compliance.
28
What is the purpose of the AWS Config Rule 'required-tags'?
The 'required-tags' rule ensures that specific tags are present on AWS resources.
29
True or False: AWS Config can track changes to both AWS resources and external resources.
False
30
What is a common use case for AWS Config in cloud migrations?
To ensure that migrated resources adhere to compliance and governance policies.
31
What type of events does AWS Config capture?
AWS Config captures configuration changes and changes to relationships between resources.
32
Fill in the blank: AWS Config can be used to enforce __________ by monitoring configurations.
best practices
33
What is the AWS Config service's pricing model based on?
AWS Config's pricing is based on the number of configuration items recorded and the number of active rules.
34
Which AWS service can provide insights into compliance trends over time when used with AWS Config?
AWS CloudTrail
35
True or False: AWS Config can help with disaster recovery planning.
True
36
What is the role of AWS Config in a multi-account AWS environment?
AWS Config can be used to manage and monitor configurations across multiple AWS accounts.
37
What is the benefit of using AWS Config with AWS Organizations?
It allows centralized management of AWS Config rules and compliance across all accounts in the organization.
38
Fill in the blank: AWS Config can help identify __________ in resource configurations.
security vulnerabilities
39
What is the significance of the 'config snapshot' feature in AWS Config?
It provides a point-in-time view of the configuration of AWS resources.
40
Which AWS Config feature helps to identify resources that do not comply with specified rules?
AWS Config Rules
41
True or False: AWS Config can only be used for compliance with regulatory frameworks.
False
42
What is a configuration recorder in AWS Config?
A configuration recorder is a resource that records configuration changes to AWS resources.
43
Fill in the blank: AWS Config uses __________ to define rules that resources must comply with.
AWS Lambda functions
44
How can AWS Config assist in troubleshooting AWS resource issues?
By providing historical configuration data and change logs.
45
What is the impact of resource drift on AWS Config?
Resource drift refers to changes that are made outside of AWS Config, causing non-compliance with defined rules.
46
True or False: AWS Config has no impact on resource performance.
True
47
What is the maximum retention period for AWS Config configuration history?
AWS Config can retain configuration history for up to seven years.
48
Fill in the blank: AWS Config enhances __________ by enabling organizations to monitor resource configurations continuously.
operational governance
49
What is the relationship between AWS Config and AWS Security Hub?
AWS Config provides compliance data used by AWS Security Hub for security posture management.