SAP-C02 · Question #787
A company has separate AWS accounts for each of its departments. The accounts are in OUs that are in an organization in AWS Organizations. The IT department manages a private certificate authority (CA
Sign in or unlock SAP-C02 to reveal the answer and full explanation for question #787. The question stem and answer options stay visible for context.
Question
A company has separate AWS accounts for each of its departments. The accounts are in OUs that are in an organization in AWS Organizations. The IT department manages a private certificate authority (CA) by using AWS Private Certificate Authority in its account. The company needs a solution to allow developer teams in the other departmental accounts to access the private CA to issue certificates for their applications. The solution must maintain appropriate security boundaries between accounts. Which solution will meet these requirements?
Options
- ACreate an AWS Lambda function in the IT account. Program the Lambda function to use the AWS
- BCreate an IAM identity-based policy that allows cross-account access to AWS Private CA. In the
- CIn the organization's management account, create an AWS CloudFormation stack to set up a
- DUse AWS Resource Access Manager (AWS RAM) in the IT account to enable sharing in the
Unlock SAP-C02 to see the answer
You've previewed enough free SAP-C02 questions. Unlock SAP-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.