ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 676 - CLF-C02 discussion

Report
Export

A company needs stateless network filtering for its VPC.

Which AWS service, tool, or feature will meet this requirement?

A.
AWS PrivateLink
Answers
A.
AWS PrivateLink
B.
Security group
Answers
B.
Security group
C.
Network access control list (ACL)
Answers
C.
Network access control list (ACL)
D.
AWS WAF
Answers
D.
AWS WAF
Suggested answer: C

Explanation:

A Network Access Control List (ACL) is a stateless network filtering mechanism provided by AWS for controlling traffic in and out of subnets within a VPC. Unlike security groups, which are stateful, network ACLs are stateless. This means that they do not automatically allow responses to inbound traffic unless explicitly specified. Network ACLs allow you to set rules for both inbound and outbound traffic, making them suitable for stateless filtering. Security groups, on the other hand, are stateful, while AWS WAF is primarily for web application-level security. AWS PrivateLink is used for privately connecting VPCs to AWS services without using an internet gateway. Therefore, for stateless network filtering, Network ACL is the correct choice.

asked 16/09/2024
Robert L Swafford
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first