Practice Test 4 | AWS Certified Cloud Practitioner | CLF-C01 | Dumps | Mock Test
Which service can be used to securely store and automatically rotate credentials for databases hosted on Amazon RDS?
A. AWS Systems Manager
B. AWS Systems Manager Parameter Store
C. AWS Secrets Manager
D. AWS Systems Manager Session Manager
Correct Answer: C
AWS Secrets Manager can be used to store and manage secrets used to access databases or other resources in AWS. It automatically rotates these secrets on a regular basis. AWS KMS can be used to encrypt data stored in AWS Secrets Manager.
- Option A is incorrect as AWS Systems Manager can be used to perform regular maintenance activities and get operational insights for resources deployed at both AWS Cloud and on-premises locations.
- Option B is incorrect as AWS Systems Manager Parameter Store can be used to store credentials but it’s not suitable for the key rotation of the credentials. AWS Systems Manager Parameter Store is free of cost but there is the additional cost incurred for using AWS Secrets Manager. AWS Secrets Manager provides additional benefits of automatic secret rotation at regular intervals.
- Option D is incorrect as AWS Systems Manager Session Manager is a managed service to connect to Amazon EC2 instance without the need of SSH or bastion hosts.
For more information on AWS Secrets Manager, refer to the following URL,
Comments are closed, but trackbacks and pingbacks are open.