
Ultimate access to all questions.
Explanation:
IAM policy with condition aws:MultiFactorAuthPresent:true on ec2:StopInstances and ec2:TerminateInstances ensures MFA is used. This matches the requirement for MFA before destructive actions.
No comments yet.
A company policy requires MFA authentication before a user can stop or terminate EC2 instances. Which policy should the SysOps administrator apply?
A
(Policy A — requires MFA condition on stop/terminate EC2 actions)
B
(Policy B)
C
(Policy C)
D
(Policy D)