← AWS Solutions Architect Associate: architecture decisions
16 / 18 · 60 MIN

Objects: retention, replication, and recovery

Connect each object dataset’s policy with cost, copies, and demonstrable recovery.

Inventory before automation

A fictional reconciliation archive contains small documents, large reports, and interrupted uploads. One age rule does not describe these populations. Record size, version, class, source, destination, retention horizon, and access requirements. Separate records that must be preserved from data that can be rebuilt. Operators need to know who approves deletion and how to identify the correct version during recovery. Begin with a representative sample and keep selection criteria visible so a successful operation on part of the dataset is not confused with complete coverage.

Calculate savings over the right horizon

A team estimates that transition saves 12 units monthly but costs 90 units initially. With six months remaining, gross savings are 72 and net savings are -18. These fictional values exclude other costs; a real decision includes requests, metadata, retrieval, and minimum duration where applicable. Current Lifecycle defaults do not transition objects below 128 KB. An override may change eligibility without proving savings. Compare leaving small objects in place with aggregating them, including the effect of retrieving only one document from a larger aggregate.

Separate completed objects from incomplete parts

An interrupted upload can leave stored parts without a completed object. AbortIncompleteMultipartUpload targets incomplete uploads after the configured age and does not delete completed documents. Set the horizon from legitimate upload duration and the resume process. An overly short horizon can conflict with authorized long-running operations; an indefinite one accumulates abandoned data. During handover to RUN, include incomplete-upload metrics, rule ownership, and a procedure for investigating growth. Do not substitute expiration of all objects for cleanup with a different scope and purpose.

Build the destination history

Live replication and backfill address different intervals. For eligible existing versions, Batch Replication supports a manifest and per-object outcomes. In an exercise, 1000 versions enter the manifest: 960 succeed and 40 fail; another 200 were never included. There are 240 versions to resolve or assess, not only 40. This does not mean every version should be copied: first confirm scope. Retain results and compare them with the approved population. Also assess Lifecycle interaction so removals during the job do not make the comparison misleading.

Manage the destination as its own scope

An object copy does not carry the entire bucket configuration. Changing source Lifecycle does not install the same destination configuration. A deletion specifying versionId also does not remove the replica through replication. These differences affect retention, investigation, and application retirement. Draw a matrix of source actions, expected destination effects, and evidence to collect. Separate requests to recover a version from requests to remove authorized copies. Support staff should be able to explain why a copy still exists without declaring replication broken or assuming that source deletion proves all copies disappeared.

Exercise the recovery path

The business requests an archived document for an investigation. A temporary Glacier Flexible Retrieval restore makes a copy available for a period; it does not permanently change the object’s class. If permanent Standard access is required, plan a copy after restoration with the chosen class and appropriate controls. In the guided exercise, identify the version, confirm authorization, follow restoration, and validate content before delivery. Record observed times and dependencies. An object’s presence in an inventory does not prove immediate readability or that the intended person can retrieve it.

# Synthetic scope ledger, not an AWS operation
manifest = 1000
success = 960
failed = 40
outside_manifest = 200
requires_resolution_or_scope_review = failed + outside_manifest # 240
IN PRACTICE

Fictional archive: 960 copied versions, 40 failures, and 200 outside the manifest. Acceptance must distinguish technical failure from a scope gap.

Common pitfalls

Assuming Lifecycle is replicated; counting completed jobs as complete copies; using price per GiB without object count; confusing temporary restore with permanent class change.

Related topics: Data protection and recovery · Storage and content delivery · Costs, commitments, and retirement

Take this idea with you

Recovery evidence must identify population, versions, outcome, and access. Cost depends on each dataset’s complete lifecycle.

Create account

Reference: S3 Lifecycle transition considerations · SAA-C03

AWS is a trademark of Amazon.com, Inc. or its affiliates. bigsavant.com is an independent preparation platform and is not affiliated with, associated with, sponsored, authorised or endorsed by AWS. Content and questions are original, are not official exam questions, and completing our tests does not award or guarantee any certification. Names are used only to identify the subject. All other trademarks belong to their respective owners.