The latest AWS Certified SAP on AWS – Specialty PAS-C01 certification actual real practice exam question and answer (Q&A) dumps are available free, which are helpful for you to pass the AWS Certified SAP on AWS – Specialty PAS-C01 exam and earn AWS Certified SAP on AWS – Specialty PAS-C01 certification.
Table of Contents
- Question 1
- Exam Question
- Correct Answer
- Question 2
- Exam Question
- Correct Answer
- Question 3
- Exam Question
- Correct Answer
- Question 4
- Exam Question
- Correct Answer
- Question 5
- Exam Question
- Correct Answer
- Question 6
- Exam Question
- Correct Answer
- Question 7
- Exam Question
- Correct Answer
- Question 8
- Exam Question
- Correct Answer
- Question 9
- Exam Question
- Correct Answer
- Question 10
- Exam Question
- Correct Answer
Question 1
Exam Question
A company hosts an SAP HANA database on an Amazon EC2 instance in the us-east-1 Region. The company needs to implement a disaster recovery (DR) site in the us-west-1 Region. The company needs a cost-optimized solution that offers a guaranteed capacity reservation, an RPO of less than 30 minutes, and an RTO of less than 30 minutes. Which solution will meet these requirements?
A. Deploy a single EC2 instance to support the secondary database in us-west-1 with additional storage. Use this secondary database instance to support QA and production. Configure the primary SAP HANA database in us-east-1 to constantly replicate the data to the secondary SAP HANA database in us-west-1 by using SAP HANA system replication with preload off. During DR, shut down the QA SAP HANA instance and restart the production services at the secondary site.
B. Deploy a secondary staging server on an EC2 instance in us-west-1. Use CloudEndure Disaster Recovery to replicate changes at the database level from us-east-1 to the secondary staging server on an ongoing basis. During DR, initiate cutover, increase the size of the secondary EC2 instance to match the primary EC2 instance, and start the secondary EC2 instance.
C. Set up the primary SAP HANA database in us-east-1 to constantly replicate the data to a secondary SAP HANA database in us-west-1 by using SAP HANA system replication with preload on. Keep the secondary SAP HANA instance as a hot standby that is ready to take over in case of failure.
D. Create an SAP HANA database AMI by using Amazon Elastic Block Store (Amazon EBS) snapshots. Replicate the database and log backup files from a primary Amazon S3 bucket in us-east-1 to a secondary S3 bucket in us-west-1. During DR, launch the EC2 instance in us-west-1 based on AMIs that are replicated. Update host information. Download database and log backups from the secondary S3 bucket. Perform a point-in-time recovery.
Correct Answer
A. Deploy a single EC2 instance to support the secondary database in us-west-1 with additional storage. Use this secondary database instance to support QA and production. Configure the primary SAP HANA database in us-east-1 to constantly replicate the data to the secondary SAP HANA database in us-west-1 by using SAP HANA system replication with preload off. During DR, shut down the QA SAP HANA instance and restart the production services at the secondary site.
Question 2
Exam Question
A company hosts multiple SAP applications on Amazon EC2 instances in a VPC. While monitoring the environment, the company notices that multiple port scans are attempting to connect to SAP portals inside the VPC. These port scans are originating from the same IP address block. The company must deny access to the VPC from all the offending IP addresses for the next 24 hours.
Which solution will meet this requirement?
A. Modify network ACLs that are associated with all public subnets in the VPC to deny access from the IP address block.
B. Add a rule in the security group of the EC2 instances to deny access from the IP address block.
C. Create a policy in AWS Identity and Access Management (IAM) to deny access from the IP address block.
D. Configure the firewall in the operating system of the EC2 instances to deny access from the IP address block.
Correct Answer
C. Create a policy in AWS Identity and Access Management (IAM) to deny access from the IP address block.
Question 3
Exam Question
A company has an SAP environment that runs on AWS. The company wants to enhance security by restricting Amazon EC2 Instance Metadata Service (IMDS) to IMDSv2 only. The company’s current configuration option supports both IMDSv1 and IMDSv2. The security enhancement must not create an SAP outage. What should the company do before it applies the security enhancement on EC2 instances that are running the SAP environment?
A. Ensure that the SAP kernel versions are 7.45 or later.
B. Ensure that the EC2 instances are Nitro based.
C. Ensure that the AWS Data Provider for SAP is installed on each EC2 instance.
D. Stop the EC2 instances.
Correct Answer
B. Ensure that the EC2 instances are Nitro based.
Question 4
Exam Question
A company is planning to migrate its on-premises SAP application to AWS. The application runs on VMware vSphere. The SAP ERP Central Component (SAP ECC) server runs on an IBM Db2 database that is 2 TB in size. The company wants to migrate the database to SAP HANA.
Which migration strategy will meet these requirements?
A. Use AWS Application Migration Service (CloudEndure Migration).
B. Use SAP Software Update Manager (SUM) Database Migration Option (DMO) with System Move.
C. Use AWS Server Migration Service (AWS SMS).
D. Use AWS Database Migration Service (AWS DMS).
Correct Answer
A. Use AWS Application Migration Service (CloudEndure Migration).
Question 5
Exam Question
An SAP engineer has deployed an SAP S/4HANA system on an Amazon EC2 instance that runs Linux. The SAP license key has been installed. After a while, the newly installed SAP instance presents an error that indicates that the SAP license key is not valid because the SAP system’s hardware key changed. There have been no changes to the EC2 instance or its configuration.
Which solution will permanently resolve this issue?
A. Perform SAP kernel patching.
B. Apply a new SAP license that uses a new hardware key. Install the new key.
C. Set the SLIC_HW_VERSION Linux environment variable.
D. Reboot the EC2 instance.
Correct Answer
B. Apply a new SAP license that uses a new hardware key. Install the new key.
Question 6
Exam Question
A company is planning to move all its SAP applications to Amazon EC2 instances in a VPC. Recently, the company signed a multiyear contract with a payroll software-as-a-service (SaaS) provider. Integration with the payroll SaaS solution is available only through public web APIs.
Corporate security guidelines state that all outbound traffic must be validated against an allow list. The payroll SaaS provider provides only fully qualified domain name (FQDN) addresses and no IP addresses or IP address ranges. Currently, an on-premises firewall appliance filters FQDNs. The company needs to connect an SAP Process Orchestration (SAP PO) system to the payroll SaaS provider.
What must the company do on AWS to meet these requirements?
A. Add an outbound rule to the security group of the SAP PO system to allow the FQDN of the payroll SaaS provider and deny all other outbound traffic.
B. Add an outbound rule to the network ACL of the subnet that contains the SAP PO system to allow the FQDN of the payroll SaaS provider and deny all other outbound traffic.
C. Add an AWS WAF web ACL to the VPAdd an outbound rule to allow the SAP PO system to connect to the FQDN of the payroll SaaS provider.
D. Add an AWS Network Firewall firewall to the VPC. Add an outbound rule to allow the SAP PO system to connect to the FQDN of the payroll SaaS provider.
Correct Answer
D. Add an AWS Network Firewall firewall to the VPC. Add an outbound rule to allow the SAP PO system to connect to the FQDN of the payroll SaaS provider.
Question 7
Exam Question
A company uses an SAP application that runs batch jobs that are performance sensitive. The batch jobs can be restarted safely. The SAP application has six application servers. The SAP application functions reliably as long as the SAP application availability remains greater than 60%. The company wants to migrate the SAP application to AWS. The company is using a cluster with two Availability Zones.
How should the company distribute the SAP application servers to maintain system reliability?
A. Distribute the SAP application servers equally across three partition placement groups.
B. Distribute the SAP application servers equally across three Availability Zones.
C. Distribute the SAP application servers equally across two Availability Zones.
D. Create an Amazon EC2 Auto Scaling group across two Availability Zones. Set a minimum capacity value of 4.
Correct Answer
B. Distribute the SAP application servers equally across three Availability Zones.
Question 8
Exam Question
A company has deployed a highly available SAP NetWeaver system on SAP HANA into a VPC. The system is distributed across multiple Availability Zones within a single AWS Region. SAP NetWeaver is running on SUSE Linux Enterprise Server for SAP. SUSE Linux Enterprise High Availability Extension is configured to protect SAP ASCS and ERS instances and uses the overlay IP address concept. The SAP shared files /sapmnt and /usr/sap/trans are hosted on an Amazon Elastic File System (Amazon EFS) file system.
The company needs a solution that uses already-existing private connectivity to the VPC. The SAP NetWeaver system must be accessible through the SAP GUI client tool.
Which solutions will meet these requirements? (Choose two.)
A. Deploy an Application Load Balancer. Configure the overlay IP address as a target.
B. Deploy a Network Load Balancer. Configure the overlay IP address as a target.
C. Use an Amazon Route 53 private zone. Create an A record that has the overlay IP address as a target.
D. Use AWS Transit Gateway. Configure the overlay IP address as a static route in the transit gateway route table. Specify the VPC as a target.
E. Use a NAT gateway. Configure the overlay IP address as a target.
Correct Answer
C. Use an Amazon Route 53 private zone. Create an A record that has the overlay IP address as a target.
E. Use a NAT gateway. Configure the overlay IP address as a target.
Question 9
Exam Question
A company runs its SAP ERP 6.0 EHP 8 system on SAP HANA on AWS. The system is deployed on an r4.16xlarge Amazon EC2 instance with default tenancy. The company needs to migrate the SAP HANA database to an x2gd.16xlarge High Memory instance. After an operations engineer changes the instance type and starts the instance, the AWS Management Console shows a failed instance status check.
What is the cause of this problem?
A. The operations engineer missed the network configuration step during the post-migration activities.
B. The operations engineer missed the Amazon CloudWatch configuration step during the post-migration activities.
C. The operations engineer did not install Elastic Network Adapter (ENA) drivers before changing the instance type.
D. The operations engineer did not create a new AMI from the original instance and did not launch a new instance with dedicated tenancy from the AMI.
Correct Answer
C. The operations engineer did not install Elastic Network Adapter (ENA) drivers before changing the instance type.
Question 10
Exam Question
A company’s basis administrator is planning to deploy SAP on AWS in Linux. The basis administrator must set up the proper storage to store SAP HANA data and log volumes.
Which storage options should the basis administrator choose to meet these requirements? (Choose two.)
A. Amazon Elastic Block Store (Amazon EBS) Throughput Optimized HDD (st1)
B. Amazon Elastic Block Store (Amazon EBS) Provisioned OPS SSD (io1, io2)
C. Amazon S3
D. Amazon Elastic File System (Amazon EFS)
E. Amazon Elastic Block Store (Amazon EBS) General Purpose SSD (gp2, gp3)
Correct Answer
C. Amazon S3
D. Amazon Elastic File System (Amazon EFS)