QuestionQ3

Security and Compliance

A DevOps Engineer must back up sensitive Amazon S3 objects stored in an S3 bucket with a private bucket policy by using S3 Cross-Region Replication. The objects must be copied to a target bucket in another AWS Region and AWS account.

Which actions must be taken to enable this replication?

Choose three
Explanation

Cross-account S3 Cross-Region Replication uses an IAM replication role in the source account, a replication rule configured on the source bucket, and a destination-bucket policy that grants the source-account replication role permission to replicate objects into that bucket. S3 replication rules specify the destination from the source bucket; the destination does not need its own replication rule or replication role.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!