SAP-C02 · Question #142
A solutions architect has implemented a SAML 2.0 federated identity solution with their company's on-premises identity provider (IdP) to authenticate users' access to the AWS environment. When the sol
Sign in or unlock SAP-C02 to reveal the answer and full explanation for question #142. The question stem and answer options stay visible for context.
Question
A solutions architect has implemented a SAML 2.0 federated identity solution with their company's on-premises identity provider (IdP) to authenticate users' access to the AWS environment. When the solutions architect tests authentication through the federated identity web portal access to the AWS environment is granted. However, when test users attempt to authenticate through the federated identity web portal, they are not able to access the AWS environment. Which items should the solutions architect check to ensure identity federation is property configured? (Choose three.)
Options
- AThe IAM user's permissions pokey has allowed the use of SAML federation for that user
- BThe IAM roles created for the federated users' or federated groups' trust policy have set the
- CTest users are not in the AWSFederatedUsers group in the company's IdP
- DThe web portal calls the AWS STS AssumeRoleWithSAML API with the ARN of the SAML
- EThe on-premises IdP's DNS hostname is reachable from the AWS environment VPCs.
- FThe company's IdP defines SAML assertions that property map users or groups m the company
Unlock SAP-C02 to see the answer
You've previewed enough free SAP-C02 questions. Unlock SAP-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.