QuestionQ42

Security and Compliance

A CloudOps engineer needs to provide access to AWS services by attaching an IAM policy to multiple IAM users. The CloudOps engineer also needs to be able to modify the policy and create new versions.

Which combination of actions will satisfy these requirements?

Choose two
Explanation

An IAM user group can grant its members the permissions from a policy attached to that group. A customer managed policy is a reusable policy managed in the account; it can be attached to groups, edited by the customer, and versioned. AWS managed policies are managed by AWS, and inline policies have a one-to-one relationship with an identity and do not support policy versioning.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!