2025-10-14 14:59:32
๋ฐ˜์‘ํ˜•

๐Ÿ“˜ Q208.

Which AWS services or features provide high availability and low latency by enabling failover across different AWS Regions? (Choose two)

๋‹ค์–‘ํ•œ AWS ๋ฆฌ์ „์—์„œ ์žฅ์•  ์กฐ์น˜๋ฅผ ํ™œ์„ฑํ™”ํ•˜์—ฌ ๊ณ ๊ฐ€์šฉ์„ฑ๊ณผ ์งง์€ ์ง€์—ฐ ์‹œ๊ฐ„์„ ์ œ๊ณตํ•˜๋Š” AWS ์„œ๋น„์Šค๋Š” ๋ฌด์—‡์ž…๋‹ˆ๊นŒ?
(2๊ฐœ ์„ ํƒ)


โœ… ์ •๋‹ต

A. Amazon Route 53
D. AWS Global Accelerator


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

์„ ํƒ์ง€ ์„ค๋ช…
A. Amazon Route 53 ๊ธ€๋กœ๋ฒŒ DNS ์„œ๋น„์Šค๋กœ, ํ—ฌ์Šค ์ฒดํฌ(Health Check) ๊ธฐ๋Šฅ์„ ํ†ตํ•ด ๋ฆฌ์ „ ๊ฐ„ Failover Routing์ด ๊ฐ€๋Šฅํ•ฉ๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค์–ด ํ•œ ๋ฆฌ์ „์ด ์žฅ์•  ์‹œ ์ž๋™์œผ๋กœ ๋‹ค๋ฅธ ๋ฆฌ์ „์œผ๋กœ ํŠธ๋ž˜ํ”ฝ์„ ์ „ํ™˜ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ๐ŸŒ
D. AWS Global Accelerator AWS ๊ธ€๋กœ๋ฒŒ ๋„คํŠธ์›Œํฌ๋ฅผ ๊ธฐ๋ฐ˜์œผ๋กœ ์‚ฌ์šฉ์ž์˜ ์š”์ฒญ์„ ๊ฐ€์žฅ ๊ฐ€๊นŒ์šด ์—ฃ์ง€ ๋กœ์ผ€์ด์…˜(Edge Location) ์œผ๋กœ ๋ผ์šฐํŒ…ํ•˜์—ฌ ์ง€์—ฐ ์‹œ๊ฐ„(Latency) ์„ ์ค„์ด๊ณ , ์—ฌ๋Ÿฌ ๋ฆฌ์ „์— ๊ฑธ์ณ ๊ณ ๊ฐ€์šฉ์„ฑ์„ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค. ๐Ÿš€

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์™œ ํ‹€๋ ธ๋Š”๊ฐ€
B. Network Load Balancer ๋‹จ์ผ ๋ฆฌ์ „ ๋‚ด์—์„œ ๋™์ž‘ํ•˜๋ฉฐ, ๋ฆฌ์ „ ๊ฐ„ Failover ๋ถˆ๊ฐ€๋Šฅ โŒ ๋ฆฌ์ „ ๊ฐ„ ํŠธ๋ž˜ํ”ฝ ๊ด€๋ฆฌ ๋ถˆ๊ฐ€
C. Amazon S3 Transfer Acceleration S3 ์—…๋กœ๋“œ ์†๋„๋ฅผ ๋†’์ด๋Š” ๊ธฐ๋Šฅ (CloudFront Edge ์‚ฌ์šฉ) โŒ Failover ๋ชฉ์ ์ด ์•„๋‹˜
E. Application Load Balancer ๋‹จ์ผ ๋ฆฌ์ „ ๋‚ด์˜ ์—ฌ๋Ÿฌ AZ(๊ฐ€์šฉ์˜์—ญ) ๊ฐ„ ํŠธ๋ž˜ํ”ฝ ๋ถ„์‚ฐ โŒ Cross-Region ์ง€์› ๋ถˆ๊ฐ€

๐ŸŒ ์‹œ๊ฐ ์š”์•ฝ (Mermaid)

```mermaid
flowchart LR
    subgraph Region1["๐ŸŒ AWS Region A"]
        A1[EC2/ALB]
    end
    subgraph Region2["๐ŸŒ AWS Region B"]
        A2[EC2/ALB]
    end

    user[๐Ÿ‘ค User] -->|DNS Failover| R53[๐Ÿงญ Amazon Route 53]
    R53 -->|Primary| A1
    R53 -->|Failover| A2
    user -->|Optimized Path| GA[๐Ÿš€ AWS Global Accelerator]
    GA --> A1
    GA --> A2
```
 

๐Ÿ“— ํ•œ ์ค„ ์š”์•ฝ

๐ŸŒ Route 53 = ์žฅ์•  ๊ฐ์ง€ ํ›„ ๋ฆฌ์ „ ๊ฐ„ Failover
โšก Global Accelerator = AWS ๊ธ€๋กœ๋ฒŒ ๋„คํŠธ์›Œํฌ๋ฅผ ํ†ตํ•œ ์ €์ง€์—ฐ ํŠธ๋ž˜ํ”ฝ ์ „์†ก


๐Ÿ“˜ Q209.

Which of the following is a way to use Amazon EC2 Auto Scaling groups to scale capacity in the AWS Cloud?

๋‹ค์Œ ์ค‘ Amazon EC2 Auto Scaling ๊ทธ๋ฃน์„ ์‚ฌ์šฉํ•˜์—ฌ AWS ํด๋ผ์šฐ๋“œ์—์„œ ์šฉ๋Ÿ‰์„ ํ™•์žฅํ•˜๋Š” ๋ฐฉ๋ฒ•์€ ๋ฌด์—‡์ž…๋‹ˆ๊นŒ?


โœ… ์ •๋‹ต: A. Scale the number of EC2 instances in or out automatically, based on demand.


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

Amazon EC2 Auto Scaling์€ ์›Œํฌ๋กœ๋“œ ์ˆ˜์š”(Demand)์— ๋”ฐ๋ผ EC2 ์ธ์Šคํ„ด์Šค์˜ ๊ฐœ์ˆ˜๋ฅผ ์ž๋™์œผ๋กœ ์กฐ์ ˆํ•˜๋Š” ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค.
์ด๋ฅผ ํ†ตํ•ด ๋น„์šฉ ํšจ์œจ์„ฑ๊ณผ ๊ฐ€์šฉ์„ฑ์„ ๋™์‹œ์— ํ™•๋ณดํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

๊ฐœ๋… ์„ค๋ช…
Scale Out ์ˆ˜์š” ์ฆ๊ฐ€ ์‹œ EC2 ์ธ์Šคํ„ด์Šค ์ˆ˜๋ฅผ ์ž๋™์œผ๋กœ ์ถ”๊ฐ€
Scale In ์ˆ˜์š” ๊ฐ์†Œ ์‹œ EC2 ์ธ์Šคํ„ด์Šค ์ˆ˜๋ฅผ ์ž๋™์œผ๋กœ ์ œ๊ฑฐ
์ •์ฑ… ๊ธฐ๋ฐ˜ ์Šค์ผ€์ผ๋ง (Policy-based Scaling) CloudWatch ์ง€ํ‘œ(CPU, ๋ฉ”๋ชจ๋ฆฌ ๋“ฑ)์— ๋”ฐ๋ผ ์ž๋™์œผ๋กœ ํŠธ๋ฆฌ๊ฑฐ
์˜ˆ์ธก ์Šค์ผ€์ผ๋ง (Predictive Scaling) ๊ณผ๊ฑฐ ํŠธ๋ž˜ํ”ฝ ํŒจํ„ด์„ ํ•™์Šตํ•ด ํ–ฅํ›„ ์ˆ˜์š”๋ฅผ ๋ฏธ๋ฆฌ ์˜ˆ์ธก

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์™œ ํ‹€๋ ธ๋Š”๊ฐ€
B. Use serverless EC2 instances. EC2๋Š” ์„œ๋ฒ„๋ฆฌ์Šค ์•„ํ‚คํ…์ฒ˜๊ฐ€ ์•„๋‹˜ (Lambda๊ฐ€ ์„œ๋ฒ„๋ฆฌ์Šค) โŒ ๊ฐœ๋… ์˜ค๋ฅ˜
C. Scale the size of EC2 instances up or down automatically. EC2 Auto Scaling์€ “์ธ์Šคํ„ด์Šค ๊ฐœ์ˆ˜”๋ฅผ ์กฐ์ •, ํฌ๊ธฐ(instance type) ๋ณ€๊ฒฝ์€ ์ˆ˜๋™ ์กฐ์ • ํ•„์š” โŒ ํ‹€๋ฆฐ ๊ฐœ๋…
D. Transfer unused CPU resources between EC2 instances. ์ธ์Šคํ„ด์Šค ๊ฐ„ CPU ๊ณต์œ  ๋ถˆ๊ฐ€๋Šฅ โŒ AWS๋Š” ์ž์› ๊ฒฉ๋ฆฌ ๋ชจ๋ธ์„ ์œ ์ง€ํ•จ

๐Ÿง  ํ•ต์‹ฌ ์š”์•ฝ

๊ตฌ๋ถ„ ๋‚ด์šฉ
์„œ๋น„์Šค๋ช… Amazon EC2 Auto Scaling
์ฃผ์š” ๊ธฐ๋Šฅ EC2 ์ธ์Šคํ„ด์Šค์˜ ์ˆ˜๋Ÿ‰ ์ž๋™ ์กฐ์ • (in/out)
ํŠธ๋ฆฌ๊ฑฐ ๊ธฐ์ค€ CPU ์‚ฌ์šฉ๋ฅ , ์š”์ฒญ ์ˆ˜, ๋„คํŠธ์›Œํฌ ํŠธ๋ž˜ํ”ฝ ๋“ฑ CloudWatch ์ง€ํ‘œ
์ด์  ๊ณ ๊ฐ€์šฉ์„ฑ(HA) + ๋น„์šฉ ์ตœ์ ํ™”(๋น„์ˆ˜๊ธฐ ์ž๋™ ์ถ•์†Œ)

๐Ÿ“Š ์‹œ๊ฐ ์š”์•ฝ (Mermaid)

```mermaid
flowchart LR
    A[๐Ÿ“ˆ ์ˆ˜์š” ์ฆ๊ฐ€] -->|ํŠธ๋ž˜ํ”ฝ ์ฆ๊ฐ€| B[Auto Scaling Group]
    B -->|Scale Out| C[EC2 ์ธ์Šคํ„ด์Šค ์ถ”๊ฐ€]
    A2[๐Ÿ“‰ ์ˆ˜์š” ๊ฐ์†Œ] -->|ํŠธ๋ž˜ํ”ฝ ๊ฐ์†Œ| B2[Auto Scaling Group]
    B2 -->|Scale In| D[EC2 ์ธ์Šคํ„ด์Šค ๊ฐ์†Œ]
```
 

โœ… ์ •๋‹ต

A. Scale the number of EC2 instances in or out automatically, based on demand.


๐Ÿ“— ํ•œ ์ค„ ์š”์•ฝ

๐Ÿงฉ EC2 Auto Scaling = ์ˆ˜์š”์— ๋”ฐ๋ผ EC2 ์ธ์Šคํ„ด์Šค “๊ฐœ์ˆ˜”๋ฅผ ์ž๋™์œผ๋กœ ์กฐ์ •ํ•˜์—ฌ ๊ฐ€์šฉ์„ฑ๊ณผ ๋น„์šฉ ํšจ์œจ์„ ๊ทน๋Œ€ํ™”ํ•œ๋‹ค. ๐Ÿš€


๐Ÿ“˜ Q226.

A company is hosting an application in the AWS Cloud.
The company wants to verify that underlying AWS services and general AWS infrastructure are operating normally.
Which combination of AWS services can the company use to gather the required information? (Choose two)

AWS ํด๋ผ์šฐ๋“œ์—์„œ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์„ ์šด์˜ ์ค‘์ธ ํšŒ์‚ฌ๊ฐ€,
AWS ์ธํ”„๋ผ์™€ ์„œ๋น„์Šค๊ฐ€ ์ •์ƒ์ ์œผ๋กœ ๋™์ž‘ ์ค‘์ธ์ง€ ํ™•์ธํ•˜๋ ค๊ณ  ํ•ฉ๋‹ˆ๋‹ค.
์–ด๋–ค AWS ์„œ๋น„์Šค ์กฐํ•ฉ์„ ์‚ฌ์šฉํ•ด์•ผ ํ• ๊นŒ์š”? (2๊ฐœ ์„ ํƒ)


โœ… ์ •๋‹ต

A. AWS Personal Health Dashboard
D. AWS Service Health Dashboard


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

์„œ๋น„์Šค ์—ญํ•  ํŠน์ง•
A. AWS Personal Health Dashboard (PHD) ๊ณ ๊ฐ์˜ ํŠน์ • ๋ฆฌ์†Œ์Šค์— ์˜ํ–ฅ์„ ์ฃผ๋Š” AWS ์„œ๋น„์Šค ์ƒํƒœ๋ฅผ ํ‘œ์‹œ ๋กœ๊ทธ์ธ ํ›„ ๊ฐœ์ธํ™”๋œ ์˜ํ–ฅ ๋ณด๊ณ ์„œ ์ œ๊ณต, CloudWatch ์•Œ๋ฆผ ์—ฐ๋™ ๊ฐ€๋Šฅ
D. AWS Service Health Dashboard (SHD) ์ „์ฒด AWS ๋ฆฌ์ „์˜ ๊ณต์šฉ ์„œ๋น„์Šค ์ƒํƒœ๋ฅผ ์‹ค์‹œ๊ฐ„์œผ๋กœ ํ‘œ์‹œ AWS ์ „๋ฐ˜์ ์ธ ์žฅ์•  ์—ฌ๋ถ€ ํŒŒ์•… ๊ฐ€๋Šฅ (status.aws.amazon.com)

์ด ๋‘ ๊ฐ€์ง€๋Š” ํ•จ๊ป˜ ์‚ฌ์šฉํ•˜์—ฌ

  • ์ „์ฒด AWS ์ธํ”„๋ผ์˜ ๋ฌธ์ œ ์—ฌ๋ถ€(์ „์—ญ ์ˆ˜์ค€)์™€
  • ํŠน์ • ๊ณ„์ •/๋ฆฌ์ „/๋ฆฌ์†Œ์Šค์— ๋ฏธ์น˜๋Š” ์˜ํ–ฅ(๊ฐœ์ธํ™” ์ˆ˜์ค€)์„
    ๋ชจ๋‘ ํŒŒ์•…ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ๐ŸŒ

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์™œ ์˜ค๋‹ต์ธ๊ฐ€
B. AWS Systems Manager EC2 ์ธ์Šคํ„ด์Šค ๋ฐ ํ•˜์ด๋ธŒ๋ฆฌ๋“œ ์„œ๋ฒ„ ๊ด€๋ฆฌ์šฉ โŒ AWS ์ธํ”„๋ผ ์ƒํƒœ ํ™•์ธ ๋ชฉ์ ์ด ์•„๋‹˜
C. AWS Trusted Advisor ๋น„์šฉ, ๋ณด์•ˆ, ์„ฑ๋Šฅ ๊ด€๋ จ ๊ถŒ์žฅ์‚ฌํ•ญ ์ œ๊ณต โŒ ์„œ๋น„์Šค ์ƒํƒœ ํ™•์ธ๊ณผ ๋ฌด๊ด€
E. AWS Service Catalog ์‚ฌ๋‚ด ํ‘œ์ค€ ์„œ๋น„์Šค ์นดํƒˆ๋กœ๊ทธ ๊ด€๋ฆฌ์šฉ โŒ ๋ชจ๋‹ˆํ„ฐ๋ง ๊ธฐ๋Šฅ ์•„๋‹˜

๐Ÿ“Š ์‹œ๊ฐ ์š”์•ฝ (Mermaid)

```mermaid
flowchart TD
    subgraph AWS["๐ŸŒ AWS Infrastructure"]
        S1["๐Ÿ—บ๏ธ AWS Global Region Health\n(Service Health Dashboard)"]
        S2["๐Ÿ“ข Account-specific Health\n(Personal Health Dashboard)"]
    end

    user["๐Ÿ‘ค Cloud Administrator"]
    user -->|๐Ÿ” ์ƒํƒœ ํ™•์ธ| S1
    user -->|๐Ÿ“ฉ ๊ฐœ์ธํ™” ์•Œ๋ฆผ| S2
```
 

๐Ÿ“— ํ•œ ์ค„ ์š”์•ฝ

๐Ÿ” Service Health Dashboard → ์ „์ฒด AWS ์„œ๋น„์Šค์˜ ๊ณต์šฉ ์ƒํƒœ ํ™•์ธ
๐Ÿงญ Personal Health Dashboard → ๋‚ด ๊ณ„์ • ๋ฆฌ์†Œ์Šค์— ์˜ํ–ฅ์„ ์ฃผ๋Š” ์ด๋ฒคํŠธ ํ™•์ธ


๐Ÿ“˜ Q227.

A company needs to migrate a PostgreSQL database from on-premises to Amazon RDS.
Which AWS service or tool should the company use to meet this requirement?

ํšŒ์‚ฌ๋Š” PostgreSQL ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค๋ฅผ ์˜จํ”„๋ ˆ๋ฏธ์Šค์—์„œ Amazon RDS๋กœ ๋งˆ์ด๊ทธ๋ ˆ์ด์…˜ํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.
์ด ์š”๊ตฌ ์‚ฌํ•ญ์„ ์ถฉ์กฑํ•˜๊ธฐ ์œ„ํ•ด ์–ด๋–ค AWS ์„œ๋น„์Šค๋ฅผ ์‚ฌ์šฉํ•ด์•ผ ํ•ฉ๋‹ˆ๊นŒ?


โœ… ์ •๋‹ต: C. AWS Database Migration Service (AWS DMS)


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

ํ•ญ๋ชฉ ์„ค๋ช…
AWS DMS (Database Migration Service) ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค๋ฅผ ์˜จํ”„๋ ˆ๋ฏธ์Šค → AWS (RDS, Aurora, EC2 ๋“ฑ) ์œผ๋กœ ์‰ฝ๊ณ  ๋น ๋ฅด๊ฒŒ ๋งˆ์ด๊ทธ๋ ˆ์ด์…˜ํ•  ์ˆ˜ ์žˆ๋„๋ก ์ง€์›ํ•ฉ๋‹ˆ๋‹ค.
์ง€์› ๋Œ€์ƒ Oracle, MySQL, PostgreSQL, MariaDB, SQL Server, MongoDB ๋“ฑ
ํŠน์ง• - ๋‹ค์šดํƒ€์ž„ ์ตœ์†Œํ™”
- ์‹ค์‹œ๊ฐ„ ๋ฐ์ดํ„ฐ ๋ณต์ œ ๊ฐ€๋Šฅ
- ๋™์ผ ์—”์ง„ ๊ฐ„ ๋งˆ์ด๊ทธ๋ ˆ์ด์…˜(์˜ˆ: PostgreSQL → PostgreSQL) ๋ฟ๋งŒ ์•„๋‹ˆ๋ผ ์ด๊ธฐ์ข… ๊ฐ„ ๋งˆ์ด๊ทธ๋ ˆ์ด์…˜(์˜ˆ: Oracle → Aurora PostgreSQL)๋„ ๊ฐ€๋Šฅ
๋ณด์กฐ ๋„๊ตฌ ์Šคํ‚ค๋งˆ๊ฐ€ ๋‹ค๋ฅธ ๊ฒฝ์šฐ์—๋Š” AWS Schema Conversion Tool (SCT) ์„ ํ•จ๊ป˜ ์‚ฌ์šฉํ•˜์—ฌ ๊ตฌ์กฐ๋ฅผ ๋ณ€ํ™˜

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์™œ ํ‹€๋ ธ๋Š”๊ฐ€
A. Cloud Adoption Readiness Tool ํด๋ผ์šฐ๋“œ ๋„์ž… ์ค€๋น„ ์ƒํƒœ๋ฅผ ํ‰๊ฐ€ํ•˜๋Š” ์„ค๋ฌธํ˜• ๋„๊ตฌ โŒ ๋งˆ์ด๊ทธ๋ ˆ์ด์…˜ ์ˆ˜ํ–‰์šฉ ์•„๋‹˜
B. AWS Migration Hub ์—ฌ๋Ÿฌ ๋งˆ์ด๊ทธ๋ ˆ์ด์…˜ ์ž‘์—…(DMS, Application Migration ๋“ฑ)์˜ ์ง„ํ–‰ ํ˜„ํ™ฉ์„ ํ•œ ๊ณณ์—์„œ ์ถ”์ ํ•˜๋Š” ์„œ๋น„์Šค โŒ ์ž์ฒด์ ์œผ๋กœ ๋ฐ์ดํ„ฐ ์ด๋™ ๋ถˆ๊ฐ€
D. AWS Application Migration Service (MGN) ์ „์ฒด ์„œ๋ฒ„(์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ํฌํ•จ) ๋ฅผ ํด๋ผ์šฐ๋“œ๋กœ ์ด์ „ํ•  ๋•Œ ์‚ฌ์šฉ โŒ DB๋งŒ ์˜ฎ๊ธธ ๋•Œ๋Š” DMS๊ฐ€ ์ ํ•ฉ

๐Ÿง  ํ•ต์‹ฌ ์š”์•ฝ

๊ตฌ๋ถ„ ์„ค๋ช…
์„œ๋น„์Šค๋ช… AWS Database Migration Service (DMS)
์ฃผ์š” ์šฉ๋„ ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค ์ด๊ด€ ๋ฐ ์‹ค์‹œ๊ฐ„ ๋ณต์ œ
์žฅ์  ์ตœ์†Œํ•œ์˜ ๋‹ค์šดํƒ€์ž„์œผ๋กœ ๋ฐ์ดํ„ฐ ์ด์ „ ๊ฐ€๋Šฅ
ํ•จ๊ป˜ ์‚ฌ์šฉํ•˜๋Š” ๋„๊ตฌ AWS Schema Conversion Tool (SCT)

๐Ÿ“Š ์‹œ๊ฐ ์š”์•ฝ (Mermaid)

 
flowchart LR A["๐Ÿข On-premises<br>PostgreSQL DB"] -->|Data Migration| B["โ˜๏ธ AWS DMS"] B --> C["๐Ÿ—„๏ธ Amazon RDS for PostgreSQL"] note right of B:: "Minimal downtime\nContinuous data replication"

๐Ÿ“— ํ•œ ์ค„ ์š”์•ฝ

๐Ÿงฉ AWS DMS = ์˜จํ”„๋ ˆ๋ฏธ์Šค DB๋ฅผ AWS RDS๋‚˜ Aurora๋กœ ๋งˆ์ด๊ทธ๋ ˆ์ด์…˜ํ•  ๋•Œ ์‚ฌ์šฉํ•˜๋Š” ํ•ต์‹ฌ ์„œ๋น„์Šค (๋‹ค์šดํƒ€์ž„ ์ตœ์†Œํ™” + ์‹ค์‹œ๊ฐ„ ๋ณต์ œ ์ง€์›)


๐Ÿ“˜ Q232.

What can a user accomplish using AWS CloudTrail?

์‚ฌ์šฉ์ž๋Š” AWS CloudTrail์„ ์‚ฌ์šฉํ•˜์—ฌ ๋ฌด์—‡์„ ์ˆ˜ํ–‰ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๊นŒ?


โœ… ์ •๋‹ต: B. Record API calls made to AWS services.

AWS ์„œ๋น„์Šค์— ๋Œ€ํ•œ ๋ชจ๋“  API ํ˜ธ์ถœ์„ ๊ธฐ๋กํ•œ๋‹ค.


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

ํ•ญ๋ชฉ ์„ค๋ช…
AWS CloudTrail AWS ๊ณ„์ • ๋‚ด์—์„œ ๋ฐœ์ƒํ•˜๋Š” ๋ชจ๋“  API ํ˜ธ์ถœ(Activity Logging) ์„ ์ถ”์ ํ•˜๊ณ  ์ €์žฅํ•˜๋Š” ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค.
๊ธฐ๋ก ๋Œ€์ƒ ์ฝ˜์†”, SDK, CLI, ์„œ๋น„์Šค ๊ฐ„ ํ†ต์‹  ๋“ฑ AWS API๋ฅผ ํ˜ธ์ถœํ•˜๋Š” ๋ชจ๋“  ์ž‘์—…
๋กœ๊ทธ ์ €์žฅ ์œ„์น˜ ๊ธฐ๋ณธ์ ์œผ๋กœ S3 ๋ฒ„ํ‚ท์— ์ €์žฅ๋˜๋ฉฐ, CloudWatch Logs ๋˜๋Š” EventBridge ๋กœ๋„ ์—ฐ๋™ ๊ฐ€๋Šฅ
์ฃผ์š” ๋ชฉ์  ๐Ÿ•ต๏ธ‍โ™‚๏ธ ๊ฐ์‚ฌ(Audit), ๐Ÿงฉ ๋ณด์•ˆ ๋ถ„์„(Security Analysis), โš™๏ธ ๋ฌธ์ œ ํ•ด๊ฒฐ(Troubleshooting)
์˜ˆ์‹œ ๋กœ๊ทธ ํ•ญ๋ชฉ ์‚ฌ์šฉ์ž ID, ์‹œ๊ฐ„, ์›๋ณธ IP, ํ˜ธ์ถœ๋œ ์„œ๋น„์Šค/์•ก์…˜(API), ์š”์ฒญ ํŒŒ๋ผ๋ฏธํ„ฐ, ์‘๋‹ต ์ฝ”๋“œ ๋“ฑ

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์™œ ํ‹€๋ ธ๋Š”๊ฐ€
A. Generate an IAM user credentials report. IAM ์‚ฌ์šฉ์ž ์ž๊ฒฉ ๋ณด๊ณ ์„œ๋Š” IAM ์ž์ฒด ๊ธฐ๋Šฅ โŒ CloudTrail์€ IAM ๋ฆฌํฌํŠธ๋ฅผ ์ƒ์„ฑํ•˜์ง€ ์•Š์Œ
C. Assess the compliance of AWS resource configurations with policies and guidelines. ์ด๋Š” AWS Config ์˜ ๊ธฐ๋Šฅ (๊ทœ์น™ ๊ธฐ๋ฐ˜ ์ค€์ˆ˜ ๊ฒ€์‚ฌ) โŒ CloudTrail์€ ๋‹จ์ˆœํžˆ “๊ธฐ๋ก(Log)”๋งŒ ํ•จ
D. Ensure EC2 instances are patched with the latest security updates. ์ด๋Š” AWS Systems Manager Patch Manager ๊ธฐ๋Šฅ โŒ CloudTrail์€ ํŒจ์น˜ ์ƒํƒœ๋ฅผ ๊ด€๋ฆฌํ•˜์ง€ ์•Š์Œ

๐Ÿง  ํ•ต์‹ฌ ์š”์•ฝ

ํ•ญ๋ชฉ ์„ค๋ช…
์„œ๋น„์Šค๋ช… AWS CloudTrail
์—ญํ•  AWS ๊ณ„์ • ๋‚ด API ํ˜ธ์ถœ ์ด๋ ฅ ์ถ”์  ๋ฐ ์ €์žฅ
๋กœ๊ทธ ์ €์žฅ ์œ„์น˜ Amazon S3, CloudWatch Logs, EventBridge
์ฃผ์š” ์šฉ๋„ ๊ฐ์‚ฌ, ๋ณด์•ˆ ๋ชจ๋‹ˆํ„ฐ๋ง, ์šด์˜ ๋ถ„์„

๐Ÿ“Š ์‹œ๊ฐ ์š”์•ฝ (Mermaid)

 
```mermaid
flowchart LR
    A[๐Ÿ‘ค User or Service] -->|API Call| B[โ˜๏ธ AWS CloudTrail]
    B --> C[๐Ÿ—„๏ธ S3 Bucket<br>Log Archive]
    B --> D[๐Ÿ“ˆ CloudWatch Logs<br>for Analysis]
    B --> E[๐Ÿšจ EventBridge<br>for Real-time Alerts]
```


๐Ÿ“— ํ•œ ์ค„ ์š”์•ฝ

๐Ÿงฉ AWS CloudTrail = AWS API ํ˜ธ์ถœ ๋‚ด์—ญ์„ ๋ชจ๋‘ ๊ธฐ๋กํ•˜์—ฌ ๋ณด์•ˆ ๊ฐ์‚ฌ ๋ฐ ๋ณ€๊ฒฝ ์ถ”์ ์„ ๊ฐ€๋Šฅํ•˜๊ฒŒ ํ•˜๋Š” ์„œ๋น„์Šค.


๐Ÿ“˜ Q233.

A company is planning to host its workloads on AWS.
Which AWS service requires the company to update and patch the guest operating system?

ํ•œ ํšŒ์‚ฌ๊ฐ€ AWS์—์„œ ์›Œํฌ๋กœ๋“œ๋ฅผ ํ˜ธ์ŠคํŒ…ํ•˜๋ ค๊ณ  ํ•ฉ๋‹ˆ๋‹ค.
ํšŒ์‚ฌ์—์„œ ๊ฒŒ์ŠคํŠธ ์šด์˜์ฒด์ œ(Guest OS) ๋ฅผ ์—…๋ฐ์ดํŠธํ•˜๊ณ  ํŒจ์น˜ํ•ด์•ผ ํ•˜๋Š” AWS ์„œ๋น„์Šค๋Š” ๋ฌด์—‡์ž…๋‹ˆ๊นŒ?


โœ… ์ •๋‹ต: C. Amazon EC2


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

ํ•ญ๋ชฉ ์„ค๋ช…
Amazon EC2 (Elastic Compute Cloud) EC2๋Š” ๊ฐ€์ƒ ์„œ๋ฒ„(Instance)๋กœ, ๊ณ ๊ฐ์ด ์šด์˜์ฒด์ œ(OS) ์ˆ˜์ค€์˜ ์™„์ „ํ•œ ์ œ์–ด๊ถŒ์„ ๊ฐ€์ง‘๋‹ˆ๋‹ค.
์ฑ…์ž„ ๋ฒ”์œ„ AWS๋Š” ํ•˜์ดํผ๋ฐ”์ด์ €, ๋ฌผ๋ฆฌ์  ํ˜ธ์ŠคํŠธ, ๋„คํŠธ์›Œํฌ ์ธํ”„๋ผ๋ฅผ ๊ด€๋ฆฌํ•˜์ง€๋งŒ,
๊ณ ๊ฐ์€ ์ธ์Šคํ„ด์Šค ๋‚ด๋ถ€์˜ OS, ํŒจ์น˜, ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ๋ณด์•ˆ ์„ค์ •์„ ์ง์ ‘ ๊ด€๋ฆฌํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.
์ฆ‰, ๊ณ ๊ฐ ์ฑ…์ž„ ํ•ญ๋ชฉ ๐Ÿ”น ์šด์˜์ฒด์ œ ํŒจ์น˜ ๋ฐ ์—…๋ฐ์ดํŠธ
๐Ÿ”น ๋ฐฉํ™”๋ฒฝ ๋ฐ ๋ณด์•ˆ ๊ทธ๋ฃน ์„ค์ •
๐Ÿ”น ์†Œํ”„ํŠธ์›จ์–ด ๋ฐ ๋ผ์ด๋ธŒ๋Ÿฌ๋ฆฌ ๊ด€๋ฆฌ

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์™œ ์˜ค๋‹ต์ธ๊ฐ€
A. Amazon DynamoDB ์™„์ „๊ด€๋ฆฌํ˜• NoSQL ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค ์„œ๋น„์Šค โŒ AWS๊ฐ€ ์ „์ฒด ์ธํ”„๋ผ ๋ฐ OS๋ฅผ ๊ด€๋ฆฌํ•จ
B. Amazon S3 ์™„์ „๊ด€๋ฆฌํ˜• ๊ฐ์ฒด ์Šคํ† ๋ฆฌ์ง€ ์„œ๋น„์Šค โŒ ๊ณ ๊ฐ์ด OS์— ์ ‘๊ทผํ•˜๊ฑฐ๋‚˜ ํŒจ์น˜ํ•  ์ˆ˜ ์—†์Œ
D. Amazon Aurora ์™„์ „๊ด€๋ฆฌํ˜• ๊ด€๊ณ„ํ˜• DB ์„œ๋น„์Šค (RDS ๊ธฐ๋ฐ˜) โŒ ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค ์—”์ง„๊ณผ OS๋Š” AWS๊ฐ€ ์ž๋™ ๊ด€๋ฆฌ

๐Ÿง  ํ•ต์‹ฌ ๊ฐœ๋… — Shared Responsibility Model

๊ตฌ๋ถ„ AWS ์ฑ…์ž„ ๊ณ ๊ฐ ์ฑ…์ž„
AWS ๋ฌผ๋ฆฌ์  ์ธํ”„๋ผ, ํ•˜์ดํผ๋ฐ”์ด์ €, ๋„คํŠธ์›Œํฌ, ์Šคํ† ๋ฆฌ์ง€, ๋ณด์•ˆ ํŒจ์น˜ ๊ด€๋ฆฌ -
๊ณ ๊ฐ (EC2 ์‚ฌ์šฉ ์‹œ) OS ์—…๋ฐ์ดํŠธ, ํŒจ์น˜, ๋ฐฉํ™”๋ฒฝ ์„ค์ •, ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ๋ณด์•ˆ โœ… ์ง์ ‘ ์ˆ˜ํ–‰ ํ•„์š”

๐Ÿ“Š ์‹œ๊ฐ ์š”์•ฝ (Mermaid)

```mermaid
flowchart TD
    subgraph AWS["โ˜๏ธ AWS Responsibility"]
        A1[๐Ÿ—๏ธ ํ•˜๋“œ์›จ์–ด ๊ด€๋ฆฌ]
        A2[๐Ÿงฉ ํ•˜์ดํผ๋ฐ”์ด์ €]
        A3[๐ŸŒ ๋„คํŠธ์›Œํฌ ๋ฐ ์Šคํ† ๋ฆฌ์ง€]
    end

    subgraph User["๐Ÿ‘ค Customer Responsibility (EC2)"]
        B1[๐Ÿ’ป OS ํŒจ์น˜ ๋ฐ ์—…๋ฐ์ดํŠธ]
        B2[๐Ÿ›ก๏ธ ๋ฐฉํ™”๋ฒฝ ๋ฐ ๋ณด์•ˆ ์„ค์ •]
        B3[๐Ÿ“ฆ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ๊ด€๋ฆฌ]
    end
```


๐Ÿ“— ํ•œ ์ค„ ์š”์•ฝ

๐Ÿงฉ Amazon EC2๋Š” ๊ณ ๊ฐ์ด ๊ฒŒ์ŠคํŠธ OS๋ฅผ ์ง์ ‘ ๊ด€๋ฆฌํ•˜๊ณ  ํŒจ์น˜ํ•ด์•ผ ํ•˜๋Š” ์„œ๋น„์Šค์ด๋‹ค.
(AWS๋Š” ์ธํ”„๋ผ๋ฅผ, ๊ณ ๊ฐ์€ ์ธ์Šคํ„ด์Šค ๋‚ด๋ถ€ ํ™˜๊ฒฝ์„ ๊ด€๋ฆฌํ•œ๋‹ค.)


๐Ÿ“˜ Q234.

Which AWS service or feature will search for and identify AWS resources that are shared externally?

์™ธ๋ถ€์—์„œ ๊ณต์œ ๋˜๋Š” AWS ๋ฆฌ์†Œ์Šค๋ฅผ ๊ฒ€์ƒ‰ํ•˜๊ณ  ์‹๋ณ„ํ•˜๋Š” ์„œ๋น„์Šค ๋˜๋Š” ๊ธฐ๋Šฅ์€ ๋ฌด์—‡์ž…๋‹ˆ๊นŒ?


โœ… ์ •๋‹ต: C. AWS IAM Access Analyzer


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค


ํ•ญ๋ชฉ ์„ค๋ช…
AWS IAM Access Analyzer AWS ๊ณ„์ • ๋‚ด ๋ฆฌ์†Œ์Šค(์˜ˆ: S3 ๋ฒ„ํ‚ท, KMS ํ‚ค, IAM ์—ญํ•  ๋“ฑ)๊ฐ€ ์กฐ์ง ์™ธ๋ถ€(๋˜๋Š” ๋‹ค๋ฅธ ๊ณ„์ •) ์— ์˜ํ•ด ์ ‘๊ทผ ๊ฐ€๋Šฅํ•œ์ง€๋ฅผ ์ž๋™์œผ๋กœ ๋ถ„์„ํ•˜๊ณ  ๋ณด๊ณ ํ•˜๋Š” ์„œ๋น„์Šค
ํ•ต์‹ฌ ๊ธฐ๋Šฅ - ์™ธ๋ถ€ ๊ณต์œ  ๋ฆฌ์†Œ์Šค ํƒ์ง€
- ์‹ ๋ขฐ ์ •์ฑ…(Trust Policy) ๊ธฐ๋ฐ˜ ๋ถ„์„
- ์™ธ๋ถ€ ๊ณ„์ •, ํผ๋ธ”๋ฆญ ์•ก์„ธ์Šค, ๊ต์ฐจ ๊ณ„์ • ๊ณต์œ  ์‹๋ณ„
์ง€์› ๋ฆฌ์†Œ์Šค ์˜ˆ์‹œ S3, KMS, IAM Role, Lambda Layer, SQS, SNS ๋“ฑ
๊ฒฐ๊ณผ “์ด ๋ฆฌ์†Œ์Šค๊ฐ€ ์™ธ๋ถ€ ๊ณ„์ •๊ณผ ๊ณต์œ  ์ค‘์ธ์ง€” ์—ฌ๋ถ€๋ฅผ ์•Œ๋ ค์ฃผ๋ฉฐ, ๋ณด์•ˆ ๊ฐ์‚ฌ ๋ฐ ๊ทœ์ • ์ค€์ˆ˜(Compliance) ์— ๋งค์šฐ ์ค‘์š”ํ•จ

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์™œ ํ‹€๋ ธ๋Š”๊ฐ€
A. Amazon OpenSearch Service ๊ฒ€์ƒ‰ ๋ฐ ๋กœ๊ทธ ๋ถ„์„(Elasticsearch ๊ธฐ๋ฐ˜) ์„œ๋น„์Šค โŒ ๋ณด์•ˆ ๋˜๋Š” ์ ‘๊ทผ ๋ถ„์„ ๊ธฐ๋Šฅ ์—†์Œ
B. AWS Control Tower ๋‹ค๊ณ„์ • ๊ตฌ์กฐ๋ฅผ ์ž๋™ํ™”ํ•ด ๊ฑฐ๋ฒ„๋„Œ์Šค๋ฅผ ์ œ๊ณตํ•˜๋Š” ์„œ๋น„์Šค โŒ ๋ฆฌ์†Œ์Šค ์™ธ๋ถ€ ๊ณต์œ  ํƒ์ง€๋Š” ์ˆ˜ํ–‰ํ•˜์ง€ ์•Š์Œ
D. AWS Fargate ์„œ๋ฒ„๋ฆฌ์Šค ์ปจํ…Œ์ด๋„ˆ ์‹คํ–‰ ์„œ๋น„์Šค โŒ ์ ‘๊ทผ ์ œ์–ด ๋ฐ ๊ณต์œ  ํƒ์ง€ ๊ธฐ๋Šฅ ์—†์Œ

๐Ÿง  ํ•ต์‹ฌ ์š”์•ฝ

ํ•ญ๋ชฉ ๋‚ด์šฉ
์„œ๋น„์Šค๋ช… AWS IAM Access Analyzer
๊ธฐ๋Šฅ ์™ธ๋ถ€์— ๋…ธ์ถœ๋œ ๋ฆฌ์†Œ์Šค ์ž๋™ ํƒ์ง€ ๋ฐ ๋ณด๊ณ 
์ฃผ์š” ๋Œ€์ƒ S3 ๋ฒ„ํ‚ท, KMS ํ‚ค, IAM Role, Lambda Layer ๋“ฑ
ํ™œ์šฉ ๋ชฉ์  ๋ณด์•ˆ ๊ฐ์‚ฌ, ๊ทœ์ • ์ค€์ˆ˜, ๋ฐ์ดํ„ฐ ์œ ์ถœ ์˜ˆ๋ฐฉ

๐Ÿ“Š ์‹œ๊ฐ ์š”์•ฝ (Mermaid)

 
```mermaid
flowchart LR
    A["๐Ÿข ๋‚ด AWS ๊ณ„์ •"]
    A -->|"๐Ÿค Trust Policy"| B["๐ŸŒ ์™ธ๋ถ€ ๊ณ„์ • ๋˜๋Š” ํผ๋ธ”๋ฆญ ์ ‘๊ทผ"]
    A --> C["๐Ÿง  IAM Access Analyzer"]
    C -->|"๐Ÿ” Detection & Report"| D["๐Ÿ“‹ ์™ธ๋ถ€ ๊ณต์œ  ๋ฆฌ์†Œ์Šค ์‹๋ณ„\n(S3, IAM Role, KMS ๋“ฑ)"]
```

๐Ÿ’ก ๊ตฌ์„ฑ์š”์†Œ ์„ค๋ช…

๊ตฌ์„ฑ์š”์†Œ  ์„ค๋ช…
๐Ÿข ๋‚ด AWS ๊ณ„์ • AWS ๋ฆฌ์†Œ์Šค๋ฅผ ์†Œ์œ ํ•˜๊ณ  ์žˆ๋Š” ๊ณ„์ • (S3, IAM Role, KMS ๋“ฑ)
๐Ÿค Trust Policy ์™ธ๋ถ€ ๊ณ„์ • ๋˜๋Š” ํผ๋ธ”๋ฆญ ์ ‘๊ทผ ๊ถŒํ•œ์„ ๋ถ€์—ฌํ•˜๋Š” ์ •์ฑ…
๐Ÿง  IAM Access Analyzer ์™ธ๋ถ€ ์ ‘๊ทผ ๊ฐ€๋Šฅํ•œ ๋ฆฌ์†Œ์Šค๋ฅผ ์ž๋™์œผ๋กœ ๋ถ„์„
๐Ÿ“‹ ๋ฆฌํฌํŠธ ๊ฒฐ๊ณผ ๊ฐ์ง€๋œ ์™ธ๋ถ€ ๊ณต์œ  ๋ฆฌ์†Œ์Šค๋ฅผ ๋ชฉ๋กํ™”ํ•˜๊ณ  ๋ณด๊ณ 

๐Ÿ“— ํ•œ ์ค„ ์š”์•ฝ

๐Ÿ•ต๏ธ‍โ™‚๏ธ IAM Access Analyzer๋Š” ์™ธ๋ถ€ ๊ณ„์ •์ด๋‚˜ ํผ๋ธ”๋ฆญ์— ๊ณต์œ ๋œ AWS ๋ฆฌ์†Œ์Šค๋ฅผ ์ž๋™์œผ๋กœ ํƒ์ง€·๋ณด๊ณ ํ•˜๋Š” ๋ณด์•ˆ ๋ถ„์„ ๋„๊ตฌ์ž…๋‹ˆ๋‹ค.


๐Ÿ“˜ Q243.

Which maintenance task is the customer’s responsibility, according to the AWS shared responsibility model?

AWS ๊ณต์œ  ์ฑ…์ž„ ๋ชจ๋ธ์— ๋”ฐ๋ฅด๋ฉด ๊ณ ๊ฐ์˜ ์ฑ…์ž„์— ํ•ด๋‹นํ•˜๋Š” ์œ ์ง€ ๊ด€๋ฆฌ ์ž‘์—…์€ ๋ฌด์—‡์ž…๋‹ˆ๊นŒ?


โœ… ์ •๋‹ต: D. Amazon EC2 updates and security patches


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

ํ•ญ๋ชฉ ์„ค๋ช…
๊ณต์œ  ์ฑ…์ž„ ๋ชจ๋ธ (Shared Responsibility Model) AWS์™€ ๊ณ ๊ฐ ๊ฐ„์˜ ๋ณด์•ˆ ๋ฐ ์œ ์ง€๊ด€๋ฆฌ ์ฑ…์ž„์„ ๋ช…ํ™•ํžˆ ๊ตฌ๋ถ„ํ•˜๋Š” ๋ชจ๋ธ
AWS ์ฑ…์ž„ (Security of the Cloud) ๋ฌผ๋ฆฌ์  ์ธํ”„๋ผ, ํ•˜๋“œ์›จ์–ด, ๋„คํŠธ์›Œํฌ, ํ•˜์ดํผ๋ฐ”์ด์ € ๋“ฑ ํด๋ผ์šฐ๋“œ ์ž์ฒด์˜ ๋ณด์•ˆ ์œ ์ง€
๊ณ ๊ฐ ์ฑ…์ž„ (Security in the Cloud) ์šด์˜์ฒด์ œ(OS) ๊ด€๋ฆฌ, ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ๋ณด์•ˆ, IAM ์„ค์ •, ๋ฐ์ดํ„ฐ ์•”ํ˜ธํ™”, ํŒจ์น˜ ๊ด€๋ฆฌ ๋“ฑ
๋”ฐ๋ผ์„œ EC2 ์ธ์Šคํ„ด์Šค ๋‚ด์˜ OS ์—…๋ฐ์ดํŠธ์™€ ๋ณด์•ˆ ํŒจ์น˜๋Š” ๊ณ ๊ฐ์ด ์ˆ˜ํ–‰ํ•ด์•ผ ํ•จ  

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์ด์œ 
A. Physical connectivity among Availability Zones ๊ฐ€์šฉ ์˜์—ญ ๊ฐ„ ๋ฌผ๋ฆฌ์  ๋„คํŠธ์›Œํฌ ์—ฐ๊ฒฐ โŒ AWS ์ฑ…์ž„ (๋ฌผ๋ฆฌ ์ธํ”„๋ผ ๊ด€๋ฆฌ)
B. Network switch maintenance ์Šค์œ„์น˜, ๋ผ์šฐํ„ฐ ๋“ฑ ๋„คํŠธ์›Œํฌ ์žฅ๋น„ ์œ ์ง€๋ณด์ˆ˜ โŒ AWS ์ฑ…์ž„
C. Hardware updates and firmware patches ์„œ๋ฒ„ ๋ฐ ํ•˜๋“œ์›จ์–ด ํŽŒ์›จ์–ด ์—…๋ฐ์ดํŠธ โŒ AWS ์ฑ…์ž„
D. Amazon EC2 updates and security patches EC2 ๋‚ด๋ถ€์˜ ์šด์˜์ฒด์ œ ๋ฐ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ํŒจ์น˜ โœ… ๊ณ ๊ฐ ์ฑ…์ž„

๐Ÿง  ํ•ต์‹ฌ ๊ฐœ๋… ์š”์•ฝ

๊ตฌ๋ถ„ AWS ์ฑ…์ž„ (of the Cloud) ๊ณ ๊ฐ ์ฑ…์ž„ (in the Cloud)
ํ•˜๋“œ์›จ์–ด, ๋ฐ์ดํ„ฐ์„ผํ„ฐ โœ… โŒ
๋„คํŠธ์›Œํฌ, ํ•˜์ดํผ๋ฐ”์ด์ € โœ… โŒ
์šด์˜์ฒด์ œ (EC2 Guest OS) โŒ โœ…
์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ์ฝ”๋“œ โŒ โœ…
IAM ์ •์ฑ… ๋ฐ ๊ถŒํ•œ โŒ โœ…
๋ฐ์ดํ„ฐ ์•”ํ˜ธํ™” ์„ค์ • โŒ โœ…

๐Ÿ“Š ์‹œ๊ฐ ์š”์•ฝ (Mermaid)

 
```mermaid
flowchart LR
    subgraph AWS["โ˜๏ธ AWS Responsibility (of the Cloud)"]
        A1[๐Ÿ—๏ธ ๋ฐ์ดํ„ฐ์„ผํ„ฐ ๋ณด์•ˆ]
        A2[๐ŸŒ ๋„คํŠธ์›Œํฌ ์ธํ”„๋ผ]
        A3[๐Ÿงฉ ํ•˜์ดํผ๋ฐ”์ด์ € ๋ฐ ํ•˜๋“œ์›จ์–ด]
    end

    subgraph Customer["๐Ÿ‘ค Customer Responsibility (in the Cloud)"]
        B1[๐Ÿ’ป EC2 OS ์—…๋ฐ์ดํŠธ ๋ฐ ๋ณด์•ˆ ํŒจ์น˜]
        B2[๐Ÿ›ก๏ธ IAM ๋ฐ ๊ถŒํ•œ ๊ด€๋ฆฌ]
        B3[๐Ÿ” ๋ฐ์ดํ„ฐ ์•”ํ˜ธํ™” ๋ฐ ์ ‘๊ทผ ์ œ์–ด]
    end
```


๐Ÿ“— ํ•œ ์ค„ ์š”์•ฝ

โ˜๏ธ AWS๋Š” ์ธํ”„๋ผ๋ฅผ ์ฑ…์ž„์ง€๊ณ ,
๐Ÿ‘ค ๊ณ ๊ฐ์€ EC2 ์ธ์Šคํ„ด์Šค ๋‚ด OS ๋ฐ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์˜ ๋ณด์•ˆ ํŒจ์น˜๋ฅผ ์ฑ…์ž„์ง„๋‹ค.


๐Ÿ“˜ Q246.

A company that has AWS Enterprise Support is launching a new version of a popular product in 2 months.
The company expects a large increase in traffic to its website.
The website is hosted on Amazon EC2 instances.
Which action should the company take to assess its readiness to scale for this launch?

AWS Enterprise Support๋ฅผ ๋ณด์œ ํ•˜๊ณ  ์žˆ๋Š” ํšŒ์‚ฌ๊ฐ€
2๊ฐœ์›” ๋‚ด ์‹ ์ œํ’ˆ ๋ฒ„์ „์„ ์ถœ์‹œํ•  ์˜ˆ์ •์ด๋ฉฐ,
ํŠธ๋ž˜ํ”ฝ ๊ธ‰์ฆ์— ๋Œ€๋น„ํ•ด ํ™•์žฅ ์ค€๋น„ ์ƒํƒœ๋ฅผ ํ‰๊ฐ€ํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.
์–ด๋–ค ์กฐ์น˜๋ฅผ ์ทจํ•ด์•ผ ํ• ๊นŒ์š”?


โœ… ์ •๋‹ต: B. Use AWS Infrastructure Event Management (IEM) support


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

ํ•ญ๋ชฉ ์„ค๋ช…
AWS Infrastructure Event Management (IEM) AWS Enterprise Support ๋˜๋Š” Business Support ๊ณ ๊ฐ์—๊ฒŒ ์ œ๊ณต๋˜๋Š” ์‚ฌ์ „ ์ค€๋น„ ๋ฐ ํ™•์žฅ ์ง€์› ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค.
์ฃผ์š” ๊ธฐ๋Šฅ - ๋Œ€๊ทœ๋ชจ ์ด๋ฒคํŠธ(๋Ÿฐ์นญ, ์„ธ์ผ, ๋ฐฉ์†ก ๋“ฑ)์— ๋Œ€๋น„ํ•œ ์•„ํ‚คํ…์ฒ˜ ๊ฒ€ํ†  ๋ฐ ์šฉ๋Ÿ‰ ๊ณ„ํš ์ง€์›
- AWS ์ „๋ฌธ๊ฐ€์™€ ํ˜‘์—…ํ•˜์—ฌ ์„ฑ๋Šฅ ํ…Œ์ŠคํŠธ, ๋ฆฌ์Šคํฌ ์‹๋ณ„, ๋Œ€์‘ ๊ณ„ํš ์ˆ˜๋ฆฝ
- ํŠธ๋ž˜ํ”ฝ ๊ธ‰์ฆ ์‹œ ์•ˆ์ •์ ์ธ ์ธํ”„๋ผ ์œ ์ง€ ๋ณด์žฅ
ํ™œ์šฉ ์‹œ์  ์ด๋ฒคํŠธ 1~2๊ฐœ์›” ์ „์— AWS Support์— ์š”์ฒญํ•˜์—ฌ ์ค€๋น„ ์‹œ์ž‘

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์™œ ํ‹€๋ ธ๋Š”๊ฐ€
A. Replace the EC2 instances with AWS Lambda functions. Lambda๋Š” ์„œ๋ฒ„๋ฆฌ์Šค ์•„ํ‚คํ…์ฒ˜์ง€๋งŒ, ๋‹จ์ˆœํžˆ EC2๋ฅผ ๊ต์ฒดํ•˜๋Š” ๊ฒƒ์€ ํ™•์žฅ์„ฑ ์ค€๋น„๊ฐ€ ์•„๋‹˜ โŒ ๋ฌธ์ œ๋Š” “์‚ฌ์ „ ํ™•์žฅ์„ฑ ํ‰๊ฐ€”์ด์ง€ “์„œ๋ฒ„๋ฆฌ์Šค ์ „ํ™˜”์ด ์•„๋‹˜
C. Submit a request on AWS Marketplace to monitor the event. Marketplace๋Š” ์„œ๋“œํŒŒํ‹ฐ ์†”๋ฃจ์…˜ ๊ตฌ๋งค ํ”Œ๋žซํผ โŒ AWS ๋ชจ๋‹ˆํ„ฐ๋ง ์„œ๋น„์Šค ์•„๋‹˜
D. Review the coverage reports in the AWS Cost Management console. ๋น„์šฉ ๋ฐ ์˜ˆ์‚ฐ ๋ฆฌํฌํŠธ์šฉ โŒ ์„ฑ๋Šฅ ๋ฐ ํ™•์žฅ์„ฑ ํ‰๊ฐ€์™€ ๋ฌด๊ด€

๐Ÿง  ํ•ต์‹ฌ ๊ฐœ๋… ์š”์•ฝ

๊ตฌ๋ถ„ ๋‚ด์šฉ
์„œ๋น„์Šค ์ด๋ฆ„ AWS Infrastructure Event Management (IEM)
์ œ๊ณต ๋Œ€์ƒ Enterprise / Business Support ํ”Œ๋žœ ๊ณ ๊ฐ
์ฃผ์š” ๋ชฉ์  ๋Œ€๊ทœ๋ชจ ์ด๋ฒคํŠธ๋ฅผ ์œ„ํ•œ ์‚ฌ์ „ ์•„ํ‚คํ…์ฒ˜ ๊ฒ€ํ†  ๋ฐ ์šฉ๋Ÿ‰ ๊ณ„ํš
์ฃผ์š” ์ง€์› ํ™•์žฅ์„ฑ ํ…Œ์ŠคํŠธ, ์žฅ์•  ๋Œ€์‘ ์‹œ๋‚˜๋ฆฌ์˜ค, ์ „๋ฌธ๊ฐ€ ํ˜‘์—…
๊ฒฐ๊ณผ ์•ˆ์ •์  ํ™•์žฅ ๋ฐ ์ค‘๋‹จ ์—†๋Š” ์„œ๋น„์Šค ์œ ์ง€

๐Ÿ“Š ์‹œ๊ฐ ์š”์•ฝ (Mermaid)

 
```mermaid
flowchart TD
    A["๐Ÿข Company (Enterprise Support)"]
        --> B["๐Ÿ“ˆ ์‹ ์ œํ’ˆ ์ถœ์‹œ & ํŠธ๋ž˜ํ”ฝ ๊ธ‰์ฆ ์˜ˆ์ƒ"]
        --> C["๐Ÿค AWS Infrastructure Event Management (IEM)"]
        --> D["๐Ÿง  ์•„ํ‚คํ…์ฒ˜ ๊ฒ€ํ†  ๋ฐ ํ™•์žฅ์„ฑ ํ‰๊ฐ€"]
        --> E["โœ… ์•ˆ์ •์  ์„œ๋น„์Šค ์šด์˜ ๋ฐ ํ™•์žฅ ๋ณด์žฅ"]
```
 

๐Ÿ“— ํ•œ ์ค„ ์š”์•ฝ

๐Ÿš€ AWS IEM์€ ๋Œ€๊ทœ๋ชจ ์ด๋ฒคํŠธ(๋Ÿฐ์นญ, ์„ธ์ผ, ์บ ํŽ˜์ธ ๋“ฑ)์— ๋Œ€๋น„ํ•œ ํ™•์žฅ์„ฑ ์ค€๋น„ ๋ฐ ์•„ํ‚คํ…์ฒ˜ ๊ฒ€ํ† ๋ฅผ ์ œ๊ณตํ•˜๋Š” Enterprise Support ์ „์šฉ ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค.


๐Ÿ“˜ Q247.

A company wants to launch multiple workloads on AWS. Each workload is related to a different business unit.
The company wants to separate and track costs for each business unit.
Which solution will meet these requirements with the LEAST operational overhead?

ํšŒ์‚ฌ๊ฐ€ ์—ฌ๋Ÿฌ ์›Œํฌ๋กœ๋“œ๋ฅผ AWS์—์„œ ์šด์˜ํ•˜๋ ค๊ณ  ํ•ฉ๋‹ˆ๋‹ค.
๊ฐ ์›Œํฌ๋กœ๋“œ๋Š” ์„œ๋กœ ๋‹ค๋ฅธ ์‚ฌ์—…๋ถ€์— ์†ํ•ด ์žˆ์œผ๋ฉฐ,
๊ฐ ์‚ฌ์—…๋ถ€๋ณ„๋กœ ๋น„์šฉ์„ ๊ตฌ๋ถ„ํ•˜๊ณ  ์ถ”์ ํ•˜๋ ค๊ณ  ํ•ฉ๋‹ˆ๋‹ค.
์ตœ์†Œํ•œ์˜ ์šด์˜ ๋ถ€๋‹ด์œผ๋กœ ์ด๋ฅผ ๋‹ฌ์„ฑํ•˜๋ ค๋ฉด ์–ด๋–ค ๋ฐฉ๋ฒ•์ด ๊ฐ€์žฅ ์ข‹์„๊นŒ์š”?


โœ… ์ •๋‹ต: A. Use AWS Organizations and create one account for each business unit.


๐Ÿ’ก ์ •๋‹ต ํ•ด์„ค

ํ•ญ๋ชฉ ์„ค๋ช…
AWS Organizations ์—ฌ๋Ÿฌ AWS ๊ณ„์ •์„ ์ค‘์•™์—์„œ ๊ด€๋ฆฌํ•˜๊ณ  ํ†ตํ•ฉ ์ฒญ๊ตฌ(Consolidated Billing)๋ฅผ ์ œ๊ณตํ•˜๋Š” ์„œ๋น„์Šค
๊ตฌํ˜„ ๋ฐฉ๋ฒ• - ๊ฐ ์‚ฌ์—…๋ถ€๋ณ„๋กœ ๋ณ„๋„ AWS ๊ณ„์ • ์ƒ์„ฑ
- AWS Organizations๋ฅผ ํ†ตํ•ด ๋ชจ๋“  ๊ณ„์ •์„ ์—ฐ๊ฒฐ ๋ฐ ๊ด€๋ฆฌ
- ๋น„์šฉ์€ ๊ฐ ๊ณ„์ •๋ณ„๋กœ ์ž๋™ ๋ถ„๋ฆฌ๋˜์–ด ์ถ”์  ๊ฐ€๋Šฅ
์žฅ์  - ์šด์˜ ์˜ค๋ฒ„ํ—ค๋“œ ์ตœ์†Œํ™” (์ž๋™ ๋น„์šฉ ๋ถ„๋ฆฌ)
- ๋ณด์•ˆ ๋ฐ ๊ถŒํ•œ ๊ด€๋ฆฌ ์šฉ์ด (Service Control Policy)
- ๋น„์šฉ ํ†ตํ•ฉ ๊ฒฐ์ œ๋กœ ํ• ์ธ ํ˜œํƒ(Volume Discount)๊นŒ์ง€ ๊ฐ€๋Šฅ
๊ฒฐ๊ณผ ์‚ฌ์—…๋ถ€๋ณ„ ๋น„์šฉ ๊ฐ€์‹œ์„ฑ ํ™•๋ณด + ์ค‘์•™ ์ง‘์ค‘ ๊ด€๋ฆฌ + ์ž๋™ํ™”๋œ ์ฒญ๊ตฌ ๊ตฌ์กฐ ์™„์„ฑ

โŒ ์˜ค๋‹ต ํ•ด์„ค

๋ณด๊ธฐ ์„ค๋ช… ์™œ ํ‹€๋ ธ๋Š”๊ฐ€
B. Use a spreadsheet to control owners and cost. ์—‘์…€ ๋“ฑ ์ˆ˜๋™ ๋ฐฉ์‹์œผ๋กœ ๋น„์šฉ ๊ด€๋ฆฌ โŒ ์ž๋™ํ™” X, ์˜ค๋ฅ˜ ์œ„ํ—˜ ๋†’์Œ
C. Use an Amazon DynamoDB table to record costs. DynamoDB์— ์ง์ ‘ ๋น„์šฉ ๋ฐ์ดํ„ฐ ์ €์žฅ โŒ ์ˆ˜๋™ ๊ด€๋ฆฌ, ์œ ์ง€๋ณด์ˆ˜ ๋น„์šฉ ์ฆ๊ฐ€
D. Use AWS Billing console to assign owners. AWS Billing ์ฝ˜์†”์€ ์†Œ์œ ์ž ์ง€์ • ๊ธฐ๋Šฅ ์—†์Œ โŒ ๊ณ„์ • ๋‹จ์œ„ ๊ตฌ๋ถ„ ๋ถˆ๊ฐ€

๐Ÿง  ํ•ต์‹ฌ ๊ฐœ๋… ์š”์•ฝ

ํ•ญ๋ชฉ ์„ค๋ช…
์„œ๋น„์Šค AWS Organizations
ํ•ต์‹ฌ ๊ธฐ๋Šฅ ๊ณ„์ • ํ†ตํ•ฉ ๊ด€๋ฆฌ, ์ •์ฑ… ์ œ์–ด, ๋น„์šฉ ํ†ตํ•ฉ ์ฒญ๊ตฌ
๋น„์šฉ ์ถ”์  ๋ฐฉ์‹ ๊ณ„์ • ๋‹จ์œ„๋ณ„ ๋ถ„๋ฆฌ ์ถ”์  (Business Unit ๋‹จ์œ„ ๊ฐ€๋Šฅ)
์žฅ์  ์ž๋™ํ™”, ๋‹จ์ˆœ์„ฑ, ํ™•์žฅ์„ฑ, ๋ณด์•ˆ ๊ด€๋ฆฌ ๊ฐ•ํ™”

๐Ÿ“Š ์‹œ๊ฐ ์š”์•ฝ (Mermaid)

```mermaid
flowchart TD
    A[๐Ÿข Company] --> B[๐Ÿงฉ AWS Organizations]
    B --> C1[๐Ÿ’ผ Account 1 - Marketing BU]
    B --> C2[๐Ÿ’ผ Account 2 - Finance BU]
    B --> C3[๐Ÿ’ผ Account 3 - R&D BU]
    B --> D[๐Ÿ’ฐ Consolidated Billing Dashboard]
```


๐Ÿ“— ํ•œ ์ค„ ์š”์•ฝ

๐Ÿงพ AWS Organizations๋ฅผ ์‚ฌ์šฉํ•ด ์‚ฌ์—…๋ถ€๋ณ„๋กœ ๊ณ„์ •์„ ๋ถ„๋ฆฌํ•˜๋ฉด,
์ž๋™์œผ๋กœ ๋น„์šฉ์ด ๊ตฌ๋ถ„๋˜๊ณ , ์šด์˜ ์˜ค๋ฒ„ํ—ค๋“œ๋ฅผ ์ตœ์†Œํ™”ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.


 

๋ฐ˜์‘ํ˜•