Soru

Zorluk: KolayCloud Architecture and Deployment Models

An organization is deploying a serverless Function-as-a-Service (FaaS) application in a public cloud environment to process customer images. According to the cloud Shared Responsibility Model, which TWO of the following tasks remain the responsibility of the customer? (Select TWO)

  1. Configuring fine-grained Identity and Access Management (IAM) execution roles and access policies for the serverless functionCevap
  2. Auditing and securing the custom application code deployed within the function against software vulnerabilitiesCevap
  3. C
    Applying security patches to the underlying operating system running the serverless execution environment
  4. D
    Managing physical server hardware and physical data center access controls hosting the cloud platform

Cevap

The customer is responsible for configuring IAM execution roles and policies for the serverless function, as well as auditing and securing the application code deployed within the function.
In Function-as-a-Service (FaaS) or serverless computing, the cloud provider abstracts away physical hardware, virtualization layers, and host operating systems. The customer retains full responsibility for identity and access management (such as function execution roles and permissions) and the security of the application code itself.

Adım Adım Çözüm

1
Analyze the cloud deployment architecture model
Identified the service model as Function-as-a-Service (FaaS) / Serverless Computing.
Understanding the service model determines where the demarcation line lies in the Shared Responsibility Model.
2
Determine Cloud Service Provider (CSP) responsibilities in serverless architectures
The CSP manages physical hardware, network infrastructure, host operating systems, and serverless runtime platforms.
Serverless abstracts away server management from the cloud customer.
3
Determine customer responsibilities in serverless architectures
The customer manages custom application code, data, and access permissions (IAM roles).
The customer retains control over identity governance and application logic regardless of infrastructure abstraction.

Anahtar Kavram

Shared Responsibility Model in Serverless (FaaS) Architectures
Tahmini Süre:1m 0s
Bu soruyu puanla