CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 40: AWS Certified Solutions Architect - Associate SAA-C02(Old)

A company's website is used to sell products to the public. The site runs on Amazon EC2 instances in an Auto Scaling group behind an Application Load Balancer(ALB). There is also an Amazon CloudFront distribution, and AWS WAF is being used to protect against SQL injection attacks. The ALB is the origin for theCloudFro…

Nội dung câu hỏi

A company's website is used to sell products to the public. The site runs on Amazon EC2 instances in an Auto Scaling group behind an Application Load Balancer(ALB). There is also an Amazon CloudFront distribution, and AWS WAF is being used to protect against SQL injection attacks. The ALB is the origin for theCloudFront distribution. A recent review of security logs revealed an external malicious IP that needs to be blocked from accessing the website. What should a solutions architect do to protect the application?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Modify the network ACL on the CloudFront distribution to add a deny rule for the malicious IP address.
  2. B. Modify the configuration of AWS WAF to add an IP match condition to block the malicious IP address. — đáp án hiện tại
  3. C. Modify the network ACL for the EC2 instances in the target groups behind the ALB to deny the malicious IP address.
  4. D. Modify the security groups for the EC2 instances in the target groups behind the ALB to deny the malicious IP address.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề