「備考歸納2023新版|Aws certified cloud practitioner(CLF-C02)
Posted on November 14, 2023 • 6 min read • 1,261 words備考事前準備(實體)請準備雙證件(含有英文名之證件,如:護照)平靜的心,進考場前,會被要求檢查口袋,此外,貴重物品也不能帶入試場,試場外有櫃子可以上鎖。
請直接到AWS官網報考(巨匠不提供協助報名之服務),建議選擇「實體」考試,如果您想要「線上」考試的話,需要先下載測試軟體,測試看看您的電腦環境是否可行。
網址如下:
AWS training and certification
如果您英文閱讀會影響到作答時間的話,建議直接報考「繁體中文」,翻譯的品質還可以接受,此外,在測試平台上可以是可以單題切換「英文」,所以有的專有名詞或者服務,您可以切換直接閱讀英文。
進考場前,會被要求檢查口袋,此外,貴重物品也不能帶入試場,試場外有櫃子可以上鎖。
領域 1: 雲端概念 (佔計分內容的 24%) 領域 2: 安全性和合規性 (佔計分內容的 30%) 領域 3: 雲端技術與服務 (佔計分內容的 34%) 領域 4: 帳單、定價和支援 (佔計分內容的 12%)
AWS(Amazon Web Services):
AWS 服務分為 23 個 Service Groups: 其中最常用的是 Compute、Storage 和 Database。
上雲的優勢:
雲端計算概念: 雲端計算提供客戶可隨需使用的計算、儲存、資料庫、應用程式等 IT 資源。
雲端收費模式: 按使用量支付,靈活彈性。
虛擬機器監視器 Hypervisor: 用於建立和執行虛擬機器的軟硬體與韌體。
雲端的優勢:
雲端特點: 彈性、擴展性、經濟實惠。
雲端計算的三種模型:
推薦的安全實踐:
資安責任區分模型、Well-Architected Framework 的五個支柱、最低權限原則。
**AWS 法遵守則:**https://aws.amazon.com/compliance
**AWS 法遵計畫:**https://aws.amazon.com/compliance/programs
AWS 資安責任區分模型:
AWS 安全服務: IAM、WAF、AWS Shield、Amazon Inspector、AWS Trusted Advisor、Amazon GuardDuty。
Well-Architected Framework:
五個支柱:
安全:
IAM(身份與存取管理):
Security 考試重點:
AWS Billing and Cost Management Dashboard:
AWS 主要的帳單費用來源:
費用的計算器:
AWS 免費方案:
AWS 支援計畫:
建議的 AWS 使用計劃:
| Category | Service | Explanation |
|---|---|---|
| 分析 | ||
| Amazon Athena | Interactive query service | |
| AWS Data Exchange | Easily find, subscribe to, and use third-party data | |
| Amazon EMR | Big data processing framework | |
| AWS Glue | ETL (Extract, Transform, Load) service | |
| Amazon Kinesis | Real-time data streaming | |
| Amazon MSK | Managed streaming for Apache Kafka | |
| Amazon OpenSearch Service | Managed Elasticsearch service | |
| Amazon QuickSight | Business Intelligence tool | |
| Amazon Redshift | Fully managed data warehouse | |
| 應用程式整合 | ||
| Amazon EventBridge | Serverless event bus for application integration | |
| Amazon SNS | Fully managed pub/sub messaging | |
| Amazon SQS | Fully managed message queuing service | |
| AWS Step Functions | Serverless orchestration service | |
| 商業應用程式 | ||
| Amazon Connect | Cloud-based contact center service | |
| Amazon SES | Email sending and receiving service | |
| 雲端財務管理 | ||
| AWS Billing Conductor | Automated billing and cost management | |
| AWS Budgets | Set custom cost and usage budgets | |
| AWS Cost and Usage Report | Detailed cost and usage information | |
| AWS Cost Explorer | Visualize, understand, and manage AWS costs | |
| AWS Marketplace | Online software store for buying and selling | |
| 運算 | ||
| AWS Batch | Run batch computing workloads | |
| Amazon EC2 | Virtual servers in the cloud | |
| AWS Elastic Beanstalk | Easy deployment and scaling of applications | |
| Amazon Lightsail | Easy compute instances for small applications | |
| AWS Local Zones | Extend AWS to specific geographic areas | |
| AWS Outposts | Extend AWS infrastructure to on-premises | |
| AWS Wavelength | Ultra-low latency applications at the edge | |
| 容器 | ||
| Amazon ECR | Docker container registry | |
| Amazon ECS | Container orchestration service | |
| Amazon EKS | Managed Kubernetes service | |
| 客户參與 | ||
| AWS Activate for Startups | Credits, training, technical support for startups | |
| AWS IQ | Connects customers with AWS Certified freelancers | |
| AWS Managed Services (AMS) | Operate AWS infrastructure on behalf of customers | |
| AWS Support | Subscriptions for access to AWS support | |
| 資料庫 | ||
| Amazon Aurora | MySQL and PostgreSQL-compatible relational DB | |
| Amazon DynamoDB | NoSQL database service | |
| Amazon MemoryDB for Redis | Fully managed Redis-compatible in-memory database | |
| Amazon Neptune | Fully managed graph database service | |
| Amazon RDS | Relational Database Service | |
| 開發人員工具 | ||
| AWS AppConfig | Create, deploy, and manage application configurations | |
| AWS CLI | Command-line interface for AWS | |
| AWS Cloud9 | Cloud-based integrated development environment | |
| AWS CloudShell | Browser-based command-line interface | |
| AWS CodeArtifact | Software package repository service | |
| AWS CodeBuild | Fully managed build service | |
| AWS CodeCommit | Source control service using Git | |
| AWS CodeDeploy | Automated deployment service | |
| AWS CodePipeline | Continuous integration and continuous delivery | |
| AWS CodeStar | Develop, build, and deploy applications on AWS | |
| AWS X-Ray | Distributed tracing for applications | |
| 終端使用者運算 | ||
| Amazon AppStream 2.0 | Stream desktop applications to users | |
| Amazon WorkSpaces | Desktop-as-a-Service (DaaS) | |
| Amazon WorkSpaces Web | Web access to virtual desktops | |
| 前端 Web 和行動應用 | ||
| AWS Amplify | Build scalable and secure cloud-powered applications | |
| AWS AppSync | Managed GraphQL service | |
| AWS Device Farm | Test Android, iOS, and web apps on real devices | |
| 物聯網 (IoT) | ||
| AWS IoT Core | Secure, scalable IoT communication | |
| AWS IoT Greengrass | Extend AWS IoT functionality to edge devices | |
| 機器學習 | ||
| Amazon Comprehend | Natural language processing service | |
| Amazon Kendra | Enterprise search service | |
| Amazon Lex | Build chatbots and conversational interfaces | |
| Amazon Polly | Text-to-speech service | |
| Amazon Rekognition | Image and video analysis service | |
| Amazon SageMaker | Build, train, and deploy machine learning models | |
| Amazon Textract | Extract text, forms, and tables from documents | |
| Amazon Transcribe | Automatic speech recognition service | |
| Amazon Translate | Neural machine translation service | |
| 管理與控管 | ||
| AWS Auto Scaling | Automatically adjust capacity based on demand | |
| AWS CloudFormation | Infrastructure as Code (IaC) service | |
| AWS CloudTrail | Record and monitor AWS API requests | |
| Amazon CloudWatch | Monitor resources and applications | |
| AWS Compute Optimizer | Recommend optimal AWS resources | |
| AWS Config | Assess, audit, and evaluate configurations | |
| AWS Control Tower | Set up and govern a secure, multi-account AWS environment | |
| AWS Health Dashboard | Personalized view of the status of AWS resources | |
| AWS Launch Wizard | Simplify launching AWS applications | |
| AWS License Manager | Track and manage software licenses | |
| AWS 管理主控台 | Centralized management console for AWS | |
| AWS Organizations | Consolidate multiple AWS accounts into an organization | |
| AWS Resource Groups 和 Tag Editor | Organize and manage resources using tags | |
| AWS Service Catalog | Create and manage catalogs of IT services | |
| AWS Systems Manager | Gain operational insights and take action | |
| AWS Trusted Advisor | Optimize AWS resources for performance and security | |
| AWS Well-Architected Tool | Review and improve your workload architecture | |
| 遷移和傳輸 | ||
| AWS Application Discovery Service | Discover and understand enterprise applications | |
| AWS Application Migration Service | Migrate applications to AWS | |
| AWS Database Migration Service (AWS DMS) | Migrate databases to AWS | |
| AWS Migration Hub | Plan and track migrations | |
| AWS Schema Conversion Tool (AWS SCT) | Convert database schema to AWS-compatible format | |
| AWS Snow Family | Physical devices to transfer data to/from AWS | |
| AWS Transfer Family | Securely transfer files to and from AWS | |
| 連網和內容交付 | ||
| Amazon API Gateway | Create, deploy, and manage APIs | |
| Amazon CloudFront | Content delivery network (CDN) | |
| AWS Direct Connect | Dedicated network connection to AWS | |
| AWS Global Accelerator | Improve global application availability and performance | |
| Amazon Route 53 | Scalable domain name system (DNS) | |
| Amazon VPC | Isolated virtual networks for AWS resources | |
| AWS VPN | Securely connect on-premises networks to AWS | |
| 安全、身分與合規 | ||
| AWS Artifact | On-demand access to AWS compliance reports | |
| AWS Audit Manager | Simplify the auditing process | |
| AWS Certificate Manager (ACM) | Provision, manage, and deploy SSL/TLS certificates | |
| AWS CloudHSM | Hardware-based key storage for regulatory compliance | |
| Amazon Cognito | Identity and user management for web and mobile apps | |
| Amazon Detective | Analyze, investigate, and respond to security issues | |
| AWS Directory Service | Managed Active Directory in the cloud | |
| AWS Firewall Manager | Centralized management of AWS WAF and security groups | |
| Amazon GuardDuty | Threat detection service | |
| AWS IAM | Identity and Access Management for AWS resources | |
| AWS IAM Identity Center (AWS Single Sign-On) | Cloud Single Sign-On (SSO) service | |
| Amazon Inspector | Automated security assessment service | |
| AWS KMS | Key management service for creating and controlling cryptographic keys | |
| Amazon Macie | Discover, classify, and protect sensitive data | |
| AWS Network Firewall | Managed firewall service | |
| AWS RAM | Share AWS resources with any AWS account | |
| AWS Secrets Manager | Securely store and manage sensitive information | |
| AWS Security Hub | Comprehensive view of security alerts and compliance status | |
| AWS Shield | DDoS protection service | |
| AWS WAF | Web Application Firewall service | |
| 無伺服器 | ||
| AWS Fargate | Run containers without managing the underlying infrastructure | |
| AWS Lambda | Run code without provisioning or managing servers | |
| 儲存 | ||
| AWS Backup | Centralized backup service for AWS resources | |
| Amazon EBS | Block-level storage volumes for EC2 instances | |
| Amazon EFS | Fully managed file storage service | |
| AWS Elastic Disaster Recovery | Cost-effective, highly scalable disaster recovery solution | |
| Amazon FSx | Fully managed file storage for Windows and Lustre | |
| Amazon S3 | Scalable object storage with data durability | |
| Amazon S3 Glacier | Low-cost archival storage with configurable retrieval times | |
| AWS Storage Gateway | Hybrid cloud storage service |