Month End Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Amazon Web Services AWS Certified DevOps Engineer - Professional DOP-C02 Question # 61 Topic 7 Discussion

Amazon Web Services AWS Certified DevOps Engineer - Professional DOP-C02 Question # 61 Topic 7 Discussion

DOP-C02 Exam Topic 7 Question 61 Discussion:
Question #: 61
Topic #: 7

A development team wants to use AWS CloudFormation stacks to deploy an application. However, the developer IAM role does not have the required permissions to provision the resources that are specified in the AWS CloudFormation template. A DevOps engineer needs to implement a solution that allows the developers to deploy the stacks. The solution must follow the principle of least privilege.

Which solution will meet these requirements?


A.

Create an IAM policy that allows the developers to provision the required resources. Attach the policy to the developer IAM role.


B.

Create an IAM policy that allows full access to AWS CloudFormation. Attach the policy to the developer IAM role.


C.

Create an AWS CloudFormation service role that has the required permissions. Grant the developer IAM role a cloudformation:* action. Use the new service role during stack deployments.


D.

Create an AWS CloudFormation service role that has the required permissions. Grant the developer IAM role the iam:PassRole permission. Use the new service role during stack deployments.


Get Premium DOP-C02 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.