Which solution will meet these requirements?
Create an FSx for Windows File Server file system in us-east-1 that has a Single-AZ 2 deployment type. Use AWS Backup to create a daily backup plan that includes a backup rule that copies the backup to us-west-2. Configure AWS Backup Vault Lock in compliance mode for a target vault in us-west-2. Configure a minimum duration of 5 years.
Create an FSx for Windows File Server file system in us-east-1 that has a Multi-AZ deployment type. Use AWS Backup to create a daily backup plan that includes a backup rule that copies the backup to us-west-2. Configure AWS Backup Vault Lock in governance mode for a target vault in us-west-2. Configure a minimum duration of 5 years.
Create an FSx for Windows File Server file system in us-east-1 that has a Multi-AZ deployment type. Use AWS Backup to create a daily backup plan that includes a backup rule that copies the backup to us-west-2. Configure AWS Backup Vault Lock in compliance mode for a target vault in us-west-2. Configure a minimum duration of 5 years.
Create an FSx for Windows File Server file system in us-east-1 that has a Single-AZ 2 deployment type. Use AWS Backup to create a daily backup plan that includes a backup rule that copies the backup to us-west-2. Configure AWS Backup Vault Lock in governance mode for a target vault in us-west-2. Configure a minimum duration of 5 years.
Explanations:
The Single-AZ 2 deployment type does not provide high availability. For the requirement of an RPO of 5 minutes, a Multi-AZ deployment type is necessary to ensure minimal downtime and data loss during disruptions. AWS Backup with a daily plan also does not meet the 5-minute RPO requirement.
While the Multi-AZ deployment type provides better availability, using AWS Backup in governance mode does not prevent accidental deletion by users with the required permissions. Compliance mode is necessary to enforce retention periods effectively. Additionally, the daily backup plan does not align with the RPO of 5 minutes.
The Multi-AZ deployment type ensures high availability and meets the RPO of 5 minutes. AWS Backup Vault Lock in compliance mode guarantees that the backup cannot be deleted for 5 years, fulfilling the retention requirement. This option effectively meets all stated requirements.
Similar to option A, the Single-AZ 2 deployment type does not provide the necessary availability for the 5-minute RPO. Even though governance mode is used, it does not fully protect backups against deletion for the required 5 years. The backup plan also does not align with the 5-minute RPO requirement.