Config Flashcards

This deck aims to help retain concepts related to the Config service. (14 cards)

1
Q

Which AWS service provides an inventory of AWS resources and their configurations, including their relationships and how they’ve changed over time?

A

AWS Config

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What AWS Config feature allows to aggregate configuration and compliance data from multiple accounts and regions into a single account?

A

Multi-Account Multi-Region Data Aggregation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Do source accounts that are part of an AWS Organization require additional authorization for an AWS Config Aggregator to collect their data?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which AWS Config resource must be created to collect configuration and compliance data from multiple source accounts and regions?

A

Aggregator

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

In which AWS region AWS Config Aggregator must be created?

A

The region where data must be aggregated

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What must source accounts not in an AWS Organization provide to allow an AWS Config Aggregator to collect their data?

A

Explicit authorization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Can AWS Config block configuration changes to resources?

A

No, it detects, records, evaluates changes and can trigger remediation actions, but does not prevent changes from happening

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the core functions of AWS Config?

A
  • Record and monitor resource configuration changes over time
  • Evaluate compliance with organizational standards
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Can AWS Config monitor and aggregate resource configurations across regions and accounts?

A

Yes, AWS Config is regional service, but supports cross-region and cross-account aggregation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What types of features does AWS Config support?

A

Standard and Optional features

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What integrations does AWS Config support for near-real-time responses to configuration changes?

A

EventBridge or SNS to deliver events/notifications, which can trigger AWS Lambda for processing or remediation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the optional feature of AWS Config?

A

Config Rules: evaluates resources against defined standards using AWS Lambda and supports automatic remediation for non-compliant resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the standard feature of AWS Config? A:

A

Configuration recorder: once enabled, collects resources and configuration history in an S3 bucket

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What types of Config Rules are available in AWS Config?

A
  • AWS-managed rules
  • Customer-managed rules
How well did you know this?
1
Not at all
2
3
4
5
Perfectly