AWS SAP-C02 · Question 53 · Domain 1.4: Multi-Account Environment
A company is setting up AWS Control Tower. They want to implement a shared services VPC for centralized Active Directory and security tools. Which TWO steps are required to integrate this with the Control Tower environment? (Select TWO)
Answer options:
Deploy the shared services in the Control Tower management account.
Create a new AWS account using the Control Tower Account Factory for the shared services.
Peer the shared services VPC with the VPCs in other member accounts using Transit Gateway.
Use AWS RAM to share the Active Directory servers directly.
Deploy the shared services in the Log Archive account.
Modify the Control Tower core CloudFormation templates.
75 questions · hints · full answers · grading