A company is using AWS Organizations with a multi-account architecture. The company’s current security configuration for the account architecture includes SCPs, resource-based policies, identity-based policies, trust policies, and session policies. A solutions architect needs to allow an IAM user in Account A to assume a role in Account

QuestionsCategory: SAP-C02A company is using AWS Organizations with a multi-account architecture. The company’s current security configuration for the account architecture includes SCPs, resource-based policies, identity-based policies, trust policies, and session policies. A solutions architect needs to allow an IAM user in Account A to assume a role in Account
Admin Staff asked 1 year ago
A company is using AWS Organizations with a multi-account architecture. The company's current security configuration for the account architecture includes SCPs, resource-based policies, identity-based policies, trust policies, and session policies.
A solutions architect needs to allow an IAM user in Account A to assume a role in Account

A. Which combination of steps must the solutions architect take to meet this requirement? (Choose three.)

B. configure the SCP for Account A to allow the action.

C. configure the resource-based policies to allow the action.

D. configure the identity-based policy on the user in Account A to allow the action.

E. configure the identity-based policy on the user in Account B to allow the action.

F. configure the trust policy on the target role in Account B to allow the action.
 
Correct Answer: CEF

This question is in SAP-C02 exam
For getting AWS Certified Solutions Architect Professional Certificate


Next Post

Recommended

Welcome Back!

Login to your account below

Create New Account!

Fill the forms below to register

Retrieve your password

Please enter your username or email address to reset your password.