diff_months: 5

Encryption in AWS

Flat 50% Off Order New Solution
Added on: 2025-05-08 06:00:45
Order Code: LD526447
Question Task Id: 0

Program: CS


Course: Cloud Security


Assignment 3: Encryption in AWS


Name: ___________________________________



  1. Which AWS service allows hardware-based cryptography for consumers who need to meet regulations? What is the kind of tenancy for this service?

  2. What is the difference between Client-side encryption and Server-side encryption?

  3. What is the default status quo for encryption in Amazon S3? How can you change it?

  4. Rose created an S3 bucket without encryption and stored about 100 objects. Later on, she decided to set encryption on for the bucket. What happens with the existing objects?

  5. Wilfred created an S3 bucket named acme-bucket with default settings. Then, he executed the command below in the AWS CLI. Discuss the usefulness of the command, justifying your opinion.


aws s3api put-bucket-encryption --bucket acme-bucket --server-side-encryption-configuration '{"Rules": [{"ApplyServerSideEncryptionByDefault": {"SSEAlgorithm": "AES256"}}]}'


6.Help Wilfred with the command above to apply bucket encryption with SSE-KMS if the master key had the ID ACME-Master-Key.


7.Explain where is the key and how it is managed after changing the encryption to SSE-KMS.


8. Wilfred needs to share some objects in the bucket with partners who are using their own AWS account. What issue will Wilfred have?


9. The command below might seem absurd. However, there are cases in which it might be necessary. Explain a use-case.


aws s3 cp s3://bucket/myfile s3://bucket/myfile --sse AES256


10. What is the command above using, SSE-S3 or SSE-KMS encryption? Modify the command to use the other type of encryption, so from SSE-S3 to SSE-KMS or vice-versa.


11. When implementing cryptography in a cloud environment, where is the worst place to store the keys that can create security implications? Chose an option among the following, justifying your answer with proper reasoning.



  1. With the cloud provider

  2. Off the cloud, with the data owner

  3. With a third-party provider, in a key escrow


12. When encrypting volumes with AWS EBS, where is the master key kept?


13. How many keys would be managed if you had 10 EC2 instances each with a different EBS volume attached? Justify your answer.

  • Uploaded By : Akshita
  • Posted on : May 08th, 2025
  • Downloads : 0
  • Views : 121

Order New Solution

Can't find what you're looking for?

Whatsapp Tap to ChatGet instant assistance

Choose a Plan

Premium

80 USD
  • All in Gold, plus:
  • 30-minute live one-to-one session with an expert
    • Understanding Marking Rubric
    • Understanding task requirements
    • Structuring & Formatting
    • Referencing & Citing
Most
Popular

Gold

30 50 USD
  • Get the Full Used Solution
    (Solution is already submitted and 100% plagiarised.
    Can only be used for reference purposes)
Save 33%

Silver

20 USD
  • Journals
  • Peer-Reviewed Articles
  • Books
  • Various other Data Sources – ProQuest, Informit, Scopus, Academic Search Complete, EBSCO, Exerpta Medica Database, and more