wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Chapter 4 - AWS IAM

Total questions: 22

Worksheet time: 12mins

Name
Class
Date
1.

What is the purpose of IAM Users and Groups in AWS?

a)

IAM Users and Groups in AWS are designed for entertainment purposes.

b)

IAM Users and Groups in AWS are used to manage physical hardware.

c)

IAM Users and Groups in AWS are used to manage access to AWS services and resources.

d)

IAM Users and Groups in AWS are used for billing purposes only.

2.

Explain the concept of IAM Roles and Policies.

a)

IAM Roles are used for managing network configurations

b)

Policies are used for defining user authentication methods

c)

IAM Roles define permissions for making AWS service requests, while Policies define permissions for IAM entities.

d)

IAM Roles are only applicable to on-premises servers

3.

How are IAM Permissions and Access managed in AWS IAM?

a)

By asking other AWS users for permission

b)

By creating policies that define permissions and attaching them to IAM identities.

c)

By sending emails to AWS support

d)

By writing code directly in the AWS Management Console

4.

How can you create a new IAM user in AWS?

a)

Use AWS SDK > Write code to create user > Execute script > Set permissions

b)

Log in to AWS Management Console > IAM > Users > Add user > Enter details > Set permissions > Create user

c)

Navigate to S3 > Create new user > Enter details > Set permissions > Save

d)

Access AWS CLI > Run command to create user > Enter details > Set permissions

5.

In AWS IAM, there are two primary types of policies used to manage permissions. What are them?

a)

Access Control Lists

b)

Attribute-Based Policies

c)

Policy Documents

d)

Identity-Based Policies

e)

Resource-Based Policies

6.

How can you grant permissions to an IAM user in AWS?

a)

Modify the user's password to grant permissions

b)

Create an IAM policy with the required permissions, attach the policy to the IAM user.

c)

Grant permissions directly through the AWS Management Console

d)

Assign a new IAM role to the user

7.

Explain the concept of IAM Access Keys.

a)

IAM Access Keys are long-term credentials used to access AWS services programmatically.

b)

IAM Access Keys are used for physical access to AWS data centers.

c)

IAM Access Keys are temporary credentials that expire after 24 hours.

d)

IAM Access Keys are used for accessing Google Cloud Platform services.

8.

What are the advantages of using IAM Groups in AWS?

a)

IAM Groups in AWS provide easier permission management, consistency in permissions across users with similar roles, and simplification of user access control.

b)

IAM Groups in AWS provide unlimited storage capacity

c)

IAM Groups in AWS increase network latency

d)

IAM Groups in AWS can only be used for billing purposes

9.

How can you monitor IAM activity in AWS?

a)

Use AWS Config to monitor IAM activity.

b)

Set up AWS CloudWatch to monitor IAM activity.

c)

Implement AWS Trusted Advisor to monitor IAM activity.

d)

Enable AWS CloudTrail to monitor IAM activity.

10.

What are the key components of IAM Policies?

a)

Resources

b)

Adjectives

c)

Actions

d)

Effects

e)

Conditions

11.

Which IAM group should be assigned to a user who needs read-only access to Amazon S3?

(Refer to your class activity 1 practical exercise in chapter 4)

a)

EC2-Support

b)

EC2-Admin

c)

S3-Support

d)

Admin-Group

12.

What is the primary permission for the group EC2-Support?

(Refer to your class activity 1 practical exercise in chapter 4)

a)

Full access to Amazon EC2

b)

Read-only access to Amazon EC2

c)

Full access to Amazon S3

d)

Read-only access to Amazon S3

13.

Which IAM group should you assign to a user who needs to be able to view, start, and stop Amazon EC2 instances?

(Refer to your class activity 1 practical exercise in chapter 4)

a)

EC2-Support

b)

Admin-Group

c)

S3-Support

d)

EC2-Admin

14.

A new staff member needs access to Amazon S3 and also requires the ability to start and stop Amazon EC2 instances. Which combination of IAM groups should they be assigned to ensure they have the necessary permissions?

(Refer to your class activity 1 practical exercise in chapter 4)

a)

EC2-Support

b)

Admin-Group

c)

S3-Support

d)

EC2-Admin

15.

You are reviewing the permissions of a user who is a member of both the EC2-Support group and the S3-Support group. This user reports they cannot start or stop EC2 instances. What is the most likely reason for this issue?

(Refer to your class activity 1 practical exercise in chapter 4)

a)

The S3-Support group has conflicting permissions with EC2-Support, causing the EC2 permissions to be overridden.

b)

The EC2-Support group does not grant permissions to start or stop EC2 instances, only read-only access.

c)

The S3-Support group restricts EC2 actions due to a policy condition.

d)

The EC2-Support group has explicit deny permissions that override the permissions of the S3-Support group.

16.

An IAM user cannot be a member of more than _ groups.

(a)  

17.

The S3-Support group has the (a)   policy attached.
(Refer to your class activity 1 practical exercise in chapter 4)

18.

After the exercise, user-3 is under which IAM Group?
(Refer to your class activity 1 practical exercise in chapter 4)

a)

S3-Support

b)

EC2-Admin

c)

EC2-Support

d)

No Group

19.

Which user can only view the EC2 list but unable to control the EC2?
(Refer to your class activity 1 practical exercise in chapter 4)

a)

user-1

b)

user-2

c)

user-3

20.

What is the exact managed policy name attached to S3-Support group?

(Refer to your class activity 1 practical exercise in chapter 4)

(a)  

21.

What is the password used to log in as user-3?
(Refer to your class activity 1 practical exercise in chapter 4)

(a)  

22.

(a)   is the process of giving authority to a user to access a resource as well as determine the access level and privileges towards a particular organization’s asset or resource