NO.1 A user has configured Auto Scaling with the minimum capacity as 2 and the desired capacity as
2. The user is trying to terminate one of the existing instance with the command:
as-terminate-instance-in-auto-scaling-group<Instance ID> --decrement-desired-capacity
What will Auto Scaling do in this scenario?
A. Throws an error
B. Terminates the instance and updates the desired capacity to 1
C. Terminates the instance and updates the desired capacity and minimum size to 1
D. Terminates the instance and does not launch a new instance
Answer: A

The Auto Scaling command as-terminate-instance-in-auto-scaling-group <Instance ID> will terminate
the specific instance ID.
The user is required to specify the parameter as --decrement-desiredcapacity.
Then Auto Scaling will terminate the instance and decrease the desired capacity by 1.
In this case since the minimum size is 2, Auto Scaling will not allow the desired capacity to go below
Thus, it will throw an error.

NO.2 A user has two EC2 instances running in two separate regions. The user is running an internal
management tool, which captures the data and sends it to CloudWatch in US East, using a CLI with
the same namespace and metric. Which of the below mentioned options is true with respect to the
above statement?
A. CloudWatch will take the data of the server, which sends the data first
B. CloudWatch will give an error since the data will conflict due to two sources
C. The setup will not work as CloudWatch cannot receive data across regions
D. CloudWatch will receive and aggregate the data based on the namespace and metric
Answer: D

Amazon CloudWatch does not differentiate the source of a metric when receiving custom data. If the
user is publishing a metric with the same namespace and dimensions from different sources,
CloudWatch will treat them as a single metric. If the data is coming with the same timezone within a
minute, CloudWatch will aggregate the data. It treats these as a single metric, allowing the user to
get the statistics, such as minimum, maximum, average, and the sum of all across all servers.

NO.3 A user has configured ELB with SSL using a security policy for secure negotiation between the
client and load balancer. The ELB security policy supports various ciphers. Which of the below
mentioned options helps identify the matching cipher at the client side to the ELB cipher list when
client is requesting ELB DNS over SSL?
A. Client Configuration Preference
B. Load Balancer Preference
C. Server Order Preference
D. Cipher Protocol
Answer: C

Elastic Load Balancing uses a Secure Socket Layer (SSL. negotiation configuration which is known as a
Security Policy. It is used to negotiate the SSL connections between a client and the load balancer.
When client is requesting ELB DNS over SSL and if the load balancer is configured to support the
Server Order Preference, then the load balancer gets to select the first cipher in its list that matches
any one of the ciphers in the client's list. Server Order Preference ensures that the load balancer
determines which cipher is used for the SSL connection.

NO.4 A user is launching an EC2 instance in the US East region.
Which of the below mentioned options is recommended by AWS with respect to the selection of the
availability zone?
A. Always select the US-East-1-a zone for HA
B. Do not select the AZ; instead let AWS select the AZ
C. Always select the AZ while launching an instance
D. The user can never select the availability zone while launching an instance
Answer: B

When launching an instance with EC2, AWS recommends not to select the availability zone (AZ.. AWS
specifies that the default Availability Zone should be accepted. This is because it enables AWS to
select the best Availability Zone based on the system health and available capacity. If the user
launches additional instances, only then an Availability Zone should be specified. This is to specify the
same or different AZ from the running instances.


