CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 67: AWS Certified Security - Specialty SCS-C02(Old)

A company is hosting multiple applications within a single VPC in its AWS account. The applications are running behind an Application Load Balancer that is associated with an AWS WAF web ACL. The company's security team has identified that multiple port scans are originating from a specific range of IP addresses on th…

Nội dung câu hỏi

A company is hosting multiple applications within a single VPC in its AWS account. The applications are running behind an Application Load Balancer that is associated with an AWS WAF web ACL. The company's security team has identified that multiple port scans are originating from a specific range of IP addresses on the internet. A security engineer needs to deny access from the offending IP addresses. Which solution will meet these requirements?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Modify the AWS WAF web ACL with an IP set match rule statement to deny incoming requests from the IP address range. — đáp án hiện tại
  2. B. Add a rule to all security groups to deny the incoming requests from the IP address range.
  3. C. Modify the AWS WAF web ACL with a rate-based rule statement to deny the incoming requests from the IP address range.
  4. D. Configure the AWS WAF web ACL with regex match conditions. Specify a pattern set to deny the incoming requests based on the match condition.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề