SOA-C02 Deployment, Provisioning, and Automation Practice Question
A company is using AWS CloudFormation to manage infrastructure. A recent stack update failed, and the SysOps administrator needs to roll back to the previous known good state. However, the stack is in UPDATE_ROLLBACK_FAILED state. What should the administrator do to recover the stack?
⚠ Common exam trap
SOA-C02 often tests UPDATE_ROLLBACK_FAILED by tempting candidates with 'delete and recreate' — the correct answer is always to fix the cause and use ContinueUpdateRollback, not to destroy the stack.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Use the ContinueUpdateRollback API or AWS Management Console to resume the rollback after addressing the failure cause
When a CloudFormation stack enters UPDATE_ROLLBACK_FAILED, the rollback could not complete because a resource could not be returned to its previous state. The administrator must first fix the underlying resource issue (e.g., a deleted resource, a permission problem, or a resource that cannot be reverted), then invoke ContinueUpdateRollback via the console, CLI, or API to resume the rollback from where it stopped. This preserves the stack and its resources rather than destroying them.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Use the ContinueUpdateRollback API or AWS Management Console to resume the rollback after addressing the failure cause
Why this is correct
When a stack update fails and the automatic rollback also fails, the stack enters the UPDATE_ROLLBACK_FAILED state. To recover, you must first resolve the underlying cause, such as an insufficient IAM permission or a resource that cannot be rolled back, then call the ContinueUpdateRollback API or use the AWS Management Console to resume the rollback. This action transitions the stack to UPDATE_ROLLBACK_COMPLETE, restoring it to its last known stable configuration.
- ✗
Delete the stack and recreate it from the previous template
Why it's wrong here
Deleting the stack and recreating it from the previous template is not a recommended recovery method because deletion permanently removes the underlying resources, potentially causing irreversible data loss (e.g., Amazon RDS databases, S3 buckets, or EC2 instances). It also does not address the specific reason the rollback failed, and the stack might be protected by termination protection or contain resources that require manual cleanup. CloudFormation provides a non-destructive recovery path via ContinueUpdateRollback, so this destructive approach should be avoided.
- ✗
Contact AWS Support to enable automatic rollback recovery
Why it's wrong here
Contacting AWS Support to enable automatic rollback recovery is not valid because no such feature exists; CloudFormation already attempts to roll back failed updates automatically, but if that rollback itself fails, the stack is left in UPDATE_ROLLBACK_FAILED and no further automatic recovery is triggered. AWS Support cannot enable a 'flag' to make the system retry rollback automatically—resolution requires an operator to inspect the failure and invoke ContinueUpdateRollback manually after fixing the cause.
- ✗
Execute another stack update with the same parameters to overwrite the failed state
Why it's wrong here
Executing another stack update with the same parameters will not resolve the underlying failure that caused the rollback to fail, and it is not permitted while the stack is in the UPDATE_ROLLBACK_FAILED state—CloudFormation will reject new update operations until the rollback is continued or the stack is deleted. Even if the update were accepted, it would only overlay the existing inconsistent state, increasing the risk of resource drift and making the stack more difficult to troubleshoot.
Go deeper
Related to this question
About these practice questions
One of 1,169 original SOA-C02 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Amazon Web Services exam blueprint
This SOA-C02 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SOA-C02 exam.