nerdexam
CrowdStrike

CCCS-203B · Question #270

You are registering a new AWS account with CrowdStrike Falcon, but the process fails with an error stating: 1. "Insufficient permissions for role ARN." What is the most likely cause of this issue?

The correct answer is D. The IAM role created for the account lacks the required policies for CrowdStrike integration. Option A: MFA is not a requirement for registering an AWS account with CrowdStrike Falcon. Its absence does not affect the IAM role's ability to function properly. Option B: While this might cause an issue during registration, the error message in the scenario specifically…

Cloud Account Registration and Integration

Question

You are registering a new AWS account with CrowdStrike Falcon, but the process fails with an error stating: 1. "Insufficient permissions for role ARN." What is the most likely cause of this issue?

Options

  • AMulti-factor authentication (MFA) is disabled on the AWS account.
  • BThe AWS account is already registered with another CrowdStrike instance.
  • CThe CrowdStrike Falcon sensor is not installed on the EC2 instances in the account.
  • DThe IAM role created for the account lacks the required policies for CrowdStrike integration.

How the community answered

(43 responses)
  • A
    5% (2)
  • B
    2% (1)
  • C
    12% (5)
  • D
    81% (35)

Explanation

Option A: MFA is not a requirement for registering an AWS account with CrowdStrike Falcon. Its absence does not affect the IAM role's ability to function properly. Option B: While this might cause an issue during registration, the error message in the scenario specifically references "insufficient permissions," which points to an IAM role misconfiguration rather than a duplicate registration problem. Option C: The CrowdStrike Falcon sensor installation is unrelated to the cloud account registration process. Sensor deployment happens after the account registration for endpoint Option D: This is the correct answer because the error indicates a permissions issue. The IAM role must have the correct policies attached to allow CrowdStrike to access the necessary resources in the AWS account. Common policies required include read-only access to services like EC2, CloudTrail, and VPC. Misconfiguring these policies will lead to registration errors.

Topics

#IAM role misconfiguration#AWS registration error#Falcon integration#permissions troubleshooting

Community Discussion

No community discussion yet for this question.

Full CCCS-203B Practice