SAP-C02 · Question #742
A solutions architect is creating an AWS CloudFormation template from an existing manually created non-production AWS environment. The CloudFormation template can be destroyed and recreated as needed.
Sign in or unlock SAP-C02 to reveal the answer and full explanation for question #742. The question stem and answer options stay visible for context.
Question
A solutions architect is creating an AWS CloudFormation template from an existing manually created non-production AWS environment. The CloudFormation template can be destroyed and recreated as needed. The environment contains an Amazon EC2 instance. The EC2 instance has an instance profile that the EC2 instance uses to assume a role in a parent account. The solutions architect recreates the role in a CloudFormation template and uses the same role name. When the CloudFormation template is launched in the child account, the EC2 instance can no longer assume the role in the parent account because of insufficient permissions What should the solutions architect do to resolve this issue?
Options
- AIn the parent account, edit the trust policy for the role that the EC2 instance needs to assume.
- BIn the parent account, edit the trust policy for the role that the EC2 instance needs to assume.
- CUpdate the CloudFormation stack again. Specify only the CAPABILITY_NAMED_IAM capability.
- DUpdate the CloudFormation stack again. Specify the CAPABILITY_IAM capability and the
Unlock SAP-C02 to see the answer
You've previewed enough free SAP-C02 questions. Unlock SAP-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.