Soru

Zorluk: OrtaAWS Service Catalog Portfolio and Product Management

A company distributes an AWS Service Catalog product that deploys web application environments. The central operations team releases a new product version to patch a security vulnerability. A SysOps administrator must ensure that all future deployments use the new version and that users can no longer provision new environments using any previous versions. The administrator must also ensure that existing, running provisioned products remain operational. Which action should the administrator take to meet these requirements?

  1. A
    Modify the portfolio's launch constraint role to deny the iam:PassRole permission when users attempt to launch older product versions.
  2. B
    Delete the older product versions from the product, relying on AWS CloudFormation to automatically roll back any running provisioned products to the new version.
  3. Set the status of the older product versions to Inactive, and ensure the new version is set to Active.Cevap
  4. D
    Deactivate the cost allocation tags associated with the older product versions in the billing console to block users from launching them.

Cevap

Set the status of the older product versions to Inactive, and ensure the new version is set to Active.
Setting a product version's status to Inactive prevents users from selecting it for new provisioning actions, while keeping it available for existing provisioned products. This ensures that current deployments are not disrupted, but all future deployments are forced to use the new Active version.

Adım Adım Çözüm

1
Identify the target product in the AWS Service Catalog console.
The product configuration details and version list are accessed.
To manage the versions of the specific product that needs security patching.
2
Locate the older versions of the product, change their status to Inactive, and set the new patched version to Active.
Older versions can no longer be chosen for new provisioning workflows, while existing provisioned products remain operational.
To prevent future vulnerable deployments without terminating or affecting currently running environments.

Anahtar Kavram

AWS Service Catalog product version lifecycle management
Tahmini Süre:1m 30s
Bu soruyu puanla