Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Amazon Exam BDS-C00 Topic 6 Question 80 Discussion

Actual exam question for Amazon's BDS-C00 exam
Question #: 80
Topic #: 6
[All BDS-C00 Questions]

A company is preparing to give AWS Management Console access to developers. Company policy mandates identity federation and role based access control. Roles are currently assigned using groups in the corporate Active Directory. What combination of the following will give developers access to the AWS console? Choose 2 answers

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

Carey
15 hours ago
Hah, imagine if we tried to just add the developers as individual IAM users. That would be a nightmare to manage! Good thing we've got the group and role-based approach.
upvoted 0 times
...
Roy
15 days ago
Wait, do we need to create a whole new directory service with Simple AD? I thought the AD Connector would do the trick. Oh well, better to have options, I guess.
upvoted 0 times
...
Gladys
17 days ago
Yeah, the AD groups are the key here. We'll use the AWS Directory Service AD Connector to link our on-prem AD to AWS, and then assign the IAM roles based on those AD groups. Seems straightforward enough.
upvoted 0 times
...
Willow
18 days ago
Hmm, looks like I need to use both AWS IAM roles and AD groups to give the developers the access they need. The AD groups will map to the IAM roles, right?
upvoted 0 times
...
Myong
19 days ago
I'm not sure about this. Can someone explain why we need both IAM groups and roles for developers to access the AWS console?
upvoted 0 times
...
Jackie
20 days ago
I agree with Timmy. Using IAM groups and roles will allow developers to access the AWS console based on their permissions.
upvoted 0 times
...
Timmy
22 days ago
I think the correct answers are C) AWS identity and Access Management groups and D) AWS identity and Access Management roles.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77