nerdexam
AmazonAmazon

DVA-C02 · Question #34

DVA-C02 Question #34: Real Exam Question with Answer & Explanation

Sign in or unlock DVA-C02 to reveal the answer and full explanation for question #34. The question stem and answer options stay visible for context.

Submitted by weili_xi· Mar 5, 2026Development with AWS Services

Question

A developer is testing a new file storage application that uses an Amazon CloudFront distribution to serve content from an Amazon S3 bucket. The distribution accesses the S3 bucket by using an origin access identity (OAI). The S3 bucket's permissions explicitly deny access to all other users. The application prompts users to authenticate on a login page and then uses signed cookies to allow users to access their personal storage directories. The developer has configured the distribution to use its default cache behavior with restricted viewer access and has set the origin to point to the S3 bucket. However, when the developer tries to navigate to the login page, the developer receives a 403 Forbidden error. The developer needs to implement a solution to allow unauthenticated access to the login page. The solution also must keep all private content secure. Which solution will meet these requirements?

Options

  • AAdd a second cache behavior to the distribution with the same origin as the default cache
  • BAdd a second cache behavior to the distribution with the same origin as the default cache
  • CAdd a second origin as a failover origin to the default cache behavior. Point the failover origin to
  • DAdd a bucket policy to the S3 bucket to allow read access. Set the resource on the policy to the

Unlock DVA-C02 to see the answer

You've previewed enough free DVA-C02 questions. Unlock DVA-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full DVA-C02 PracticeBrowse All DVA-C02 Questions