Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Snowflake Exam ADA-C01 Topic 6 Question 28 Discussion

Actual exam question for Snowflake's ADA-C01 exam
Question #: 28
Topic #: 6
[All ADA-C01 Questions]

What is required for stages, without credentials, to limit data exfiltration after a storage integration and associated stages are created?

Show Suggested Answer Hide Answer
Suggested Answer: D

According to the Snowflake documentation1, stages without credentials are a way to create external stages that use storage integrations to access data files in cloud storage without providing any credentials to Snowflake. Storage integrations are objects that define a trust relationship between Snowflake and a cloud provider, allowing Snowflake to authenticate and authorize access to the cloud storage. To limit data exfiltration after a storage integration and associated stages are created, the following account-level parameters can be set:

* REQUIRE_STORAGE_INTEGRATION_FOR_STAGE_CREATION: This parameter enforces that all external stages must be created using a storage integration. This prevents users from creating external stages with inline credentials or URLs that point to unauthorized locations.

* REQUIRE_STORAGE_INTEGRATION_FOR_STAGE_OPERATION: This parameter enforces that all operations on external stages, such as PUT, GET, COPY, and LIST, must use a storage integration. This prevents users from performing operations on external stages with inline credentials or URLs that point to unauthorized locations.

* PREVENT_UNLOAD_TO_INLINE_URL: This parameter prevents users from unloading data from Snowflake tables to inline URLs that do not use a storage integration. This prevents users from exporting data to unauthorized locations.

Therefore, the correct answer is option D, which sets all these parameters to true. Option A is incorrect because it sets PREVENT_UNLOAD_TO_INLINE_URL to false, which allows users to unload data to inline URLs that do not use a storage integration. Option B is incorrect because it sets both REQUIRE_STORAGE_INTEGRATION_FOR_STAGE_CREATION and REQUIRE_STORAGE_INTEGRATION_FOR_STAGE_OPERATION to false, which allows users to create and operate on external stages without using a storage integration. Option C is incorrect because it sets all the parameters to false, which does not enforce any restrictions on data exfiltration.


Contribute your Thoughts:

Billye
18 days ago
Wow, this question is like a riddle wrapped in an enigma, but D is the clear winner. I can't wait to show off my Snowflake skills to my friends - they'll be so impressed!
upvoted 0 times
...
Alyce
20 days ago
Option D is the way to go. I bet the exam writer was feeling pretty clever with this one, but we're not going to fall for their tricks!
upvoted 0 times
Leandro
12 days ago
Option D is the way to go.
upvoted 0 times
...
...
Therese
26 days ago
This is a tricky one, but D seems to be the most comprehensive answer. Can't wait to pass this exam and become a certified Snowflake expert!
upvoted 0 times
Dahlia
5 days ago
I'm not sure, but D does seem to be the most comprehensive option.
upvoted 0 times
...
Emerson
7 days ago
I agree, D seems to cover all the necessary requirements.
upvoted 0 times
...
Bettina
10 days ago
I think D is the correct answer.
upvoted 0 times
...
...
Robt
1 months ago
I agree with Ashley. Option D covers all the necessary steps to secure the storage integration and associated stages.
upvoted 0 times
Alline
11 days ago
Let's go with Option D then.
upvoted 0 times
...
Arlene
12 days ago
I agree, Option D seems to cover all the necessary steps.
upvoted 0 times
...
France
19 days ago
I think Option D is the best choice.
upvoted 0 times
...
...
Ashley
1 months ago
The correct answer is D. The question clearly states that we need to set the account parameters to limit data exfiltration, and option D does that.
upvoted 0 times
Sage
9 days ago
Thanks for clarifying, I see now that D is the correct choice.
upvoted 0 times
...
Rikki
11 days ago
Actually, the correct answer is D.
upvoted 0 times
...
Shenika
14 days ago
No, I believe the correct answer is B.
upvoted 0 times
...
Wilson
21 days ago
I think the answer is A.
upvoted 0 times
...
...
Sharika
2 months ago
I disagree, I believe the correct answer is D.
upvoted 0 times
...
Bettina
2 months ago
I think the answer is A.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77