SOA-C02 Deployment, Provisioning, and Automation Practice Question
A SysOps administrator is creating an AWS CloudFormation template to deploy a web server. The template must define an Amazon EC2 instance, a security group, and an Elastic IP. In which section of the template should these resources be declared?
⚠ Common exam trap
A common mix-up: candidates confuse the purpose of the Parameters section (input values) with the Resources section (resource definitions), often thinking that resources like EC2 instances are 'parameters' because they require configuration values like instance type or AMI ID.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Resources
In an AWS CloudFormation template, the Resources section is the mandatory block where all AWS resources (such as EC2 instances, security groups, and Elastic IPs) are declared and configured. The template's logic for creating, updating, and deleting these infrastructure components is defined exclusively within this section, making B the correct choice.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Parameters
Why it's wrong here
The Parameters section in an AWS CloudFormation template is designed to accept runtime input values, such as environment names, AMI IDs, or instance types, supplied by the user during stack creation or update. These parameters act as placeholders referenced elsewhere in your template via Ref or Fn::Sub, letting you customize resource configurations without editing the template. However, declaring a parameter does not create or provision any AWS infrastructure; parameters are merely variables that affect how the Resources section builds actual components.
- ✓
Resources
Why this is correct
The Resources section is the mandatory core of any AWS CloudFormation template and the only place where you define actual AWS infrastructure objects, such as EC2 instances, S3 buckets, or IAM roles. Each resource declaration includes a logical ID, an AWS::Service::Type string, and a Properties block that specifies configuration and dependencies. CloudFormation reads this section to orchestrate the creation, updating, and deletion of the stack's resources, so all real-world infrastructure must be declared here.
- ✗
Outputs
Why it's wrong here
The Outputs section is used to return visible or exported values from a successfully provisioned stack, such as DNS names, ARNs, or endpoint URLs, and it supports cross-stack references via Fn::ImportValue. Outputs pull information from resources that already exist or from parameters, but they do not define or provision anything on their own. If you omit such values from this section, your resources still exist; conversely, adding an Output without a matching resource declaration will not create infrastructure.
- ✗
Mappings
Why it's wrong here
The Mappings section provides a static lookup table of key-value pairs, commonly used to choose values based on AWS Region, environment, or other fixed conditions. For example, a mapping can associate each supported Region with a specific Linux AMI ID, and the template retrieves the correct value at runtime using Fn::FindInMap. While mappings are useful for conditional configuration, they are just data structures and never generate AWS resources; they only influence how resource properties are set in the Resources section.
Go deeper
Related to this question
About these practice questions
This SOA-C02 question is part of Courseiva's 1,169-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This SOA-C02 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SOA-C02 exam.