Amazon Web Services AWS Certified Developer - Associate DVA-C02 Question # 58 Topic 6 Discussion

Amazon Web Services AWS Certified Developer - Associate DVA-C02 Question # 58 Topic 6 Discussion

DVA-C02 Exam Topic 6 Question 58 Discussion:
Question #: 58
Topic #: 6

A developer is using an AWS CloudFormation template to create a pipeline in AWS CodePipeline. The template creates an Amazon S3 bucket that the pipeline references in a source stage. The template also creates an AWS CodeBuild project for a build stage. The pipeline sends notifications to an Amazon SNS topic. Logs for the CodeBuild project are stored in Amazon CloudWatch Logs.

The company needs to ensure that the pipeline's artifacts are encrypted with an existing customer-managed AWS KMS key. The developer has granted the pipeline permissions to use the KMS key.

Which additional step will meet these requirements?


A.

Create an Amazon S3 gateway endpoint that the pipeline can access.


B.

In the CloudFormation template, use the KMS key to encrypt the logs in CloudWatch Logs.


C.

Apply an S3 bucket policy that ensures the pipeline sends only encrypted objects to the S3 bucket.


D.

Configure the notification topic to use the existing KMS key to enable encryption with the existing KMS key.


Get Premium DVA-C02 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.