AWS Cloud Practitioner Practice Test
常见问题
这里有多少道 AWS Cloud Practitioner 练习题?+
一整套原创 AWS Cloud Practitioner 练习题,覆盖官方内容板块、按真实考试权重分布、附解析。免费,无需注册。
AWS Cloud Practitioner 考试是什么样的?+
大约 65 道题、90 分钟。先在这里按主题刷题,再做完整计时模考检验准备度。
这些是真实考题吗?+
不是。每道题都是 100% 原创,依据公开一手来源编写并附解析。我们从不抄袭真题或付费备考资料。
我可以用中文或西班牙语学吗?+
PrepPass 练习提供英文、中文、西班牙文。官方考试以英文进行 —— 你随时可以把题目语言切回英文,熟悉考试当天的确切术语。
样题与解析
以下是本题库中的部分真题与完整解析。完整题库请用上方的刷题工具。
- 1. Cloud Concepts
Which statement best describes the primary financial benefit of moving from an on-premises data center to the AWS Cloud?
- a.It trades large upfront capital expenses for variable operating expenses that scale with usage
- b.It guarantees that monthly bills will never change month to month
- c.It eliminates all costs associated with running applications
- d.It removes the need to monitor how many resources you consume
答案: a
解析: Cloud computing lets organizations avoid large upfront investments in hardware (CapEx) and instead pay only for the resources they actually use (OpEx). This variable cost model scales up or down with demand. Costs are not eliminated, and usage should still be monitored.
- 2. Security & Compliance
In a VPC, which stateful virtual firewall controls inbound and outbound traffic at the instance level?
- a.Network access control list (NACL)
- b.Route table
- c.Security group
- d.Internet gateway
答案: c
解析: A security group acts as a stateful firewall at the instance (ENI) level, where return traffic is automatically allowed. NACLs, by contrast, are stateless firewalls that operate at the subnet level.
- 3. Cloud Technology & Services
Which statement correctly describes edge locations in the AWS global infrastructure?
- a.They replace Availability Zones
- b.They are where the root user signs in
- c.They are sites used to cache content closer to users, primarily for services like CloudFront
- d.They are used only for storing relational databases
答案: c
解析: Edge locations are part of the content delivery network and cache content closer to end users to reduce latency. They are distinct from Regions and Availability Zones, which host the core compute and storage infrastructure.
- 4. Cloud Concepts
Which Well-Architected best practice improves reliability by assuming components will fail?
- a.Design for failure with automated recovery
- b.Avoid redundancy entirely to minimize monthly cost
- c.Manually restart the system after every component fault
- d.Consolidate everything onto one large server for simplicity
答案: a
解析: Anticipating failure with redundancy and automated recovery lets systems withstand component failures, a key reliability practice.
- 5. Cloud Concepts
Which design increases the risk to reliability?
- a.Automating detection and recovery from failures
- b.Using a load balancer in front of several healthy targets
- c.Relying on one server with no redundancy
- d.Distributing the workload across multiple Availability Zones
答案: c
解析: A single point of failure with no redundancy undermines reliability; distributing across AZs and automating recovery are the recommended alternatives.
- 6. Security & Compliance
Which service would help detect an EC2 instance communicating with a known malicious IP address?
- a.Amazon Macie
- b.AWS Certificate Manager
- c.AWS Artifact
- d.Amazon GuardDuty
答案: d
解析: GuardDuty analyzes logs and threat intelligence to flag activity like communication with known-malicious IPs, without deploying agents.
- 7. Security & Compliance
Which statement correctly contrasts security groups with network ACLs?
- a.NACLs are stateful and attach to instances
- b.Security groups work only at the subnet level
- c.Security groups are stateful at the instance level; NACLs are stateless at the subnet level
- d.Both are stateless and behave identically
答案: c
解析: Security groups are stateful instance-level firewalls (return traffic auto-allowed); NACLs are stateless subnet-level filters needing explicit rules both ways.
- 8. Cloud Technology & Services
What does a route table in a VPC control?
- a.Where network traffic from a subnet is directed
- b.The encryption keys used for data at rest
- c.The number of instances in an Auto Scaling group
- d.The billing alerts for the account
答案: a
解析: A route table contains rules (routes) that determine where network traffic from a subnet or gateway is directed, such as to an internet gateway or NAT gateway. Each subnet is associated with a route table.
- 9. Cloud Technology & Services
What is an Elastic IP address in AWS?
- a.A DNS record automatically created for every bucket
- b.A billing identifier used for consolidated billing
- c.A static public IPv4 address you can allocate and associate with instances in your account
- d.A private, internal-only IP address that can never be reached from the public internet at all
答案: c
解析: An Elastic IP is a static, public IPv4 address allocated to your account that you can associate with an instance and remap as needed. It provides a stable address even if the underlying instance changes.
- 10. Billing & Pricing
Which service lets you set a custom threshold and receive an alert when your actual or forecasted AWS spending exceeds it?
- a.Amazon Inspector
- b.AWS Budgets
- c.AWS Artifact
- d.AWS CloudFormation
答案: b
解析: AWS Budgets lets you create custom cost and usage budgets and sends alerts when actual or forecasted amounts breach your thresholds. This supports proactive cost control.
拥有完整的 AWS Certified Cloud Practitioner (CLF-C02) 学习指南 —— PDF + EPUB,$14.99 →