How can the user encrypt the data at rest?
Use AWS EBS encryption to encrypt the data at rest
The user cannot use EBS encryption and has to encrypt the data manually or using a third party tool
The user has to select the encryption enabled flag while launching the EC2 instance
Encryption of volume is not available as a part of the free usage tier
Explanations:
AWS EBS encryption is a built-in feature that allows users to encrypt their EBS volumes easily without needing third-party tools or manual encryption processes. This feature can be used in the free tier.
AWS provides native EBS encryption, so the user does not need to encrypt data manually or with third-party tools. The built-in encryption is available and convenient.
While users need to enable the encryption option when launching an EC2 instance, it is not a matter of simply selecting a flag; the actual option for EBS encryption must be used, which is addressed in Option A.
EBS volume encryption is available to users within the AWS Free Tier. The encryption feature does not incur additional costs as it is part of the standard EBS offering.