A CloudFormation stack update fails midway through and needs to roll back. Which resource types may NOT be automatically rolled back by CloudFormation?
-
A
EC2 instances and security groups
-
B
S3 buckets with data and some stateful resources like RDS with deletion policies
-
C
IAM roles and policies
-
D
Lambda functions and CloudWatch alarms