A deployment package uses the AWS CLI to copy files into any S3 bucket in the account, using access keys stored in environment variables. The package is running on EC2 instances, and the instances have been modified to run with an assumed IAM role and a more restrictive policy that allows access to only one bucket. After the change, the Developer logs into the host and still has the ability to write into all of the S3 buckets in that account. What is the MOST likely cause of this situation?
A) An IAM inline policy is being used on the IAM role
B) An IAM managed policy is being used on the IAM role
C) The AWS CLI is corrupt and needs to be reinstalled
D) The AWS credential provider looks for instance profile credentials last
Correct Answer:
Verified
Q14: An application under development is required to
Q15: An application is designed to use Amazon
Q16: An application takes 40 seconds to process
Q17: A Developer is creating an Auto Scaling
Q18: An application reads data from an Amazon
Q20: When writing a Lambda function, what is
Q21: An application is real-time processing millions of
Q22: The Developer for a retail company must
Q23: An on-premises application is implemented using a
Q24: An existing serverless application processes uploaded image
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents