SOA-C02 · Question #746
A SysOps administrator needs to implement a solution to back up a company's Amazon S3 objects. The solution also must prevent any entity from deleting the backups after 7 days. Which solution will…
The correct answer is B. Configure AWS Backup to back up the S3 resource type. Configure AWS Backup Vault Lock in. AWS Backup can protect S3 and, with Backup Vault Lock in compliance mode, makes backups immutable - no one (even root) can delete them before the retention you set (7 days). The grace period (“changeable” days) simply lets you adjust the policy initially; after that, deletions…
Question
A SysOps administrator needs to implement a solution to back up a company’s Amazon S3 objects. The solution also must prevent any entity from deleting the backups after 7 days. Which solution will meet these requirements?
Options
- AConfigure AWS Backup to back up the S3 resource type. Configure AWS Backup Vault Lock in
- BConfigure AWS Backup to back up the S3 resource type. Configure AWS Backup Vault Lock in
- CConfigure S3 Object Lock on all S3 buckets. Set a retention period of 60 days.
- DConfigure S3 Object Lock on all S3 buckets. Set a legal hold on all S3 objects.
How the community answered
(38 responses)- A5% (2)
- B84% (32)
- C8% (3)
- D3% (1)
Explanation
AWS Backup can protect S3 and, with Backup Vault Lock in compliance mode, makes backups immutable - no one (even root) can delete them before the retention you set (7 days). The grace period (“changeable” days) simply lets you adjust the policy initially; after that, deletions are blocked until retention expires.
Topics
Community Discussion
No community discussion yet for this question.