View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 121 Which AWS service helps centrally manage security policies across multiple AWS accounts? AWS Firewall Manager AWS Artifact AWS Audit Manager AWS Trusted Advisor Correct Answer: 1 Explanation: AWS Firewall Manager provides centralized management of firewall rules and […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 101 Which IAM mechanism delegates temporary permissions to another AWS principal? IAM group Resource tag IAM role Account alias Correct Answer: 3 Explanation: An IAM role provides permissions that can be assumed by trusted principals, allowing them to […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 81 Which IAM method lets an application obtain temporary AWS credentials? IAM group membership IAM role assumption Root account login Static console password Correct Answer: 2 Explanation: IAM role assumption allows an application or trusted principal to obtain […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 61 Which IAM capability helps identify services a role has actually accessed? IAM Access Advisor AWS Shield Standard Amazon EFS Route 53 Resolver Correct Answer: 1 Explanation: IAM Access Advisor provides information about when an IAM principal last […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 41 Which IAM feature helps identify unused permissions granted to roles? IAM Access Advisor AWS Shield S3 Inventory Amazon Inspector Correct Answer: 1 Explanation: IAM Access Advisor provides information about when AWS services were last accessed by an […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 21 Which IAM control sets a maximum permission boundary for an identity? IAM permission boundary Route table association KMS grant token CloudTrail trail Correct Answer: 1 Explanation: An IAM permissions boundary defines the maximum permissions that an IAM […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 1 Which AWS feature supplies temporary credentials to an EC2 application? IAM user password Instance profile role Root access token S3 access control list Correct Answer: 2 Explanation: An IAM role attached to an EC2 instance through an […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 381 Which Kubernetes command is commonly used to create or update resources from a YAML manifest? kubectl apply kubectl logs kubectl describe kubectl exec Correct Answer: 1 Explanation The kubectl apply command is commonly used to create or update Kubernetes resources from […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 361 Which Kubernetes component is responsible for managing the lifecycle of containers on a node through a container runtime? kubelet kube-scheduler kube-apiserver CoreDNS Correct Answer: 1 Explanation The kubelet is the primary node agent responsible for ensuring that containers described by assigned […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 341 Which Kubernetes object is primarily used to maintain a desired number of identical Pod replicas? ReplicaSet ConfigMap Service Namespace Correct Answer: 1 Explanation A ReplicaSet maintains a specified number of identical Pod replicas. If one of the managed Pods is deleted […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 321 Which Kubernetes object is used to store non-sensitive configuration data separately from application container images? Secret ConfigMap PersistentVolume ServiceAccount Correct Answer: 2 Explanation A ConfigMap stores non-sensitive configuration data separately from application container images. It can contain values such as application […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 301 Which taint effect prevents new Pods from being scheduled onto a node unless they tolerate the taint? NoExecute NoSchedule PreferNoSchedule AllowSchedule Correct Answer: 2 Explanation The NoSchedule taint effect prevents Kubernetes from scheduling new Pods onto a node unless those Pods […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 281 Which Kubernetes object is used to ensure that a desired number of application replicas remain available? ConfigMap Service Deployment Secret Correct Answer: 3 Explanation A Deployment manages a desired number of replicated Pods and is commonly used for stateless applications. It […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 261 Which Kubernetes object allows a workload to use a specific set of permissions when accessing the Kubernetes API? Service ServiceAccount ConfigMap PersistentVolume Correct Answer: 2 Explanation A ServiceAccount provides an identity for processes running inside Kubernetes Pods. When a workload needs […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 241 Which Kubernetes object is used to control whether specific Pods can communicate with other Pods or network endpoints? ConfigMap NetworkPolicy ServiceAccount ResourceQuota Correct Answer: 2 Explanation A NetworkPolicy defines rules that control network traffic to and from selected Pods. Policies can […]