Courseiva

SOA-C02 Deployment, Provisioning, and Automation Practice Question

Network Topology
$ aws cloudformation deploytemplate-file template.yamlstack-name my-stackparameter-overrides Key1=Value1 Key2=Value2capabilities CAPABILITY_IAMRefer to the exhibit.```

A SysOps administrator ran the above AWS CLI command to update an existing CloudFormation stack. The command failed with the error shown. What is the most likely cause?

⚠ Common exam trap

SOA-C02 often tests whether candidates can distinguish between template/parameter validation errors and stack lifecycle state errors — the misleading options all describe plausible failure causes, but only the stack-state explanation matches a CLI error that explicitly references the stack's current status.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

The stack is in a failed state from a previous operation and must be deleted or rollback continued.

When a CloudFormation stack is in a failed state (e.g., UPDATE_ROLLBACK_FAILED or ROLLBACK_COMPLETE), any subsequent update operation is rejected with an error stating the stack is in a state that does not permit updates. The administrator must either continue the rollback (ContinueUpdateRollback) or delete and recreate the stack before another update can proceed. This matches the typical 'Stack is in UPDATE_ROLLBACK_FAILED state and can not be updated' error returned by the CLI.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    The template file has a syntax error.

    Why it's wrong here

    A CloudFormation template syntax error is detected during the UpdateStack API call itself and produces a ValidationError such as 'Template format error: YAML not well-formed' before any stack state transition occurs. Because the reported failure is a stack state issue (ROLLBACK_COMPLETE), not a parsing failure, the template syntax is irrelevant. Furthermore, a syntax error would leave the stack in its previous valid state, not cause it to enter a rollback state.

  • ✓

    The stack is in a failed state from a previous operation and must be deleted or rollback continued.

    Why this is correct

    This is the correct answer because the UpdateStack API explicitly rejects any stack whose current status is ROLLBACK_COMPLETE with a ValidationError stating the stack is in that state and cannot be updated. ROLLBACK_COMPLETE is a terminal failed state typically reached after a failed stack creation rolled back all resources, leaving the stack with no usable resources. To recover, you must delete the stack and recreate it, or if the rollback was incomplete, use ContinueUpdateRollback to reach an updatable state.

  • ✗

    The parameter values provided are invalid.

    Why it's wrong here

    Invalid parameter values would cause CloudFormation to return a client-side validation error (e.g., 'Parameter 'InstanceType' must be a valid size') during the UpdateStack request itself, without altering the stack's status. The stack would remain in its prior state (e.g., CREATE_COMPLETE), not ROLLBACK_COMPLETE, because parameter validation happens before any resource operations. The error described is specifically about the stack's rollback state, which is independent of parameter validation.

  • ✗

    The IAM role specified lacks permissions.

    Why it's wrong here

    An insufficiently privileged IAM service role would generate an AccessDenied or 'not authorized to perform' error from the UpdateStack API, not a stack-state validation error. IAM permission checks occur during the execution of the update—or at the time the service role is passed—but they do not change the stack's status to ROLLBACK_COMPLETE. The error message pointing to a ROLLBACK_COMPLETE state proves the request passed authorization and reached the stack state validation stage.

About these practice questions

Courseiva writes every SOA-C02 question from scratch — 1,169 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official Amazon Web Services exam blueprint

This SOA-C02 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SOA-C02 exam.