AWS Certified Developer Associate DVA-C02 Practice Question
A development team is creating a web application that must allow users to authenticate with their corporate Active Directory credentials. The application also needs to provide users with temporary, secure credentials to directly access AWS services such as Amazon S3. The team plans to use Amazon Cognito. Which Amazon Cognito feature is essential for integrating with the corporate Active Directory and providing the necessary AWS credentials?
Use an Amazon Cognito User Pool with corporate Active Directory as a custom identity provider
Use an Amazon Cognito Identity Pool with SAML-based federation
Integrate AWS IAM Identity Center with the application
Configure AWS Directory Service to connect with the application
To integrate a corporate Active Directory and provide temporary AWS credentials, the team should use an Amazon Cognito Identity Pool with SAML-based federation. Identity Pools are designed to create unique identities for users and federate them with identity providers, ultimately providing them with temporary AWS credentials to access other AWS services. While a Cognito User Pool can also federate with a SAML identity provider like Active Directory, its primary function is to provide authentication tokens (JWTs) for your application, not to directly grant AWS credentials. AWS IAM Identity Center is used for managing access to AWS accounts and cloud applications for an organization's workforce, not for providing credentials to an application's end-users. AWS Directory Service for Microsoft Active Directory is a managed AD service and not the correct choice for federating an existing corporate directory for application sign-in.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is SAML-based federation?
Open an interactive chat with Bash
What is an Amazon Cognito Identity Pool?
Open an interactive chat with Bash
What is the role of AWS IAM in Cognito Identity Pools?
Open an interactive chat with Bash
AWS Certified Developer Associate DVA-C02
Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .