ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 225 - Associate Cloud Engineer discussion

Report
Export

You have two subnets (subnet-a and subnet-b) in the default VPC. Your database servers are running in subnet-a. Your application servers and web servers are running in subnet-b. You want to configure a firewall rule that only allows database traffic from the application servers to the database servers. What should you do?


A.
* Create service accounts sa-app and sa-db. * Associate service account: sa-app with the application servers and the service account sa-db with the database servers. * Create an ingress firewall rule to allow network traffic from source service account sa-app to target service account sa-db.
Answers
A.
* Create service accounts sa-app and sa-db. * Associate service account: sa-app with the application servers and the service account sa-db with the database servers. * Create an ingress firewall rule to allow network traffic from source service account sa-app to target service account sa-db.
B.
* Create network tags app-server and db-server. * Add the app-server lag lo the application servers and the db-server lag to the database servers. * Create an egress firewall rule to allow network traffic from source network tag app-server to target network tag db-server.
Answers
B.
* Create network tags app-server and db-server. * Add the app-server lag lo the application servers and the db-server lag to the database servers. * Create an egress firewall rule to allow network traffic from source network tag app-server to target network tag db-server.
C.
* Create a service account sa-app and a network tag db-server. * Associate the service account sa-app with the application servers and the network tag db-server with the database servers. * Create an ingress firewall rule to allow network traffic from source VPC IP addresses and target the subnet-a IP addresses.
Answers
C.
* Create a service account sa-app and a network tag db-server. * Associate the service account sa-app with the application servers and the network tag db-server with the database servers. * Create an ingress firewall rule to allow network traffic from source VPC IP addresses and target the subnet-a IP addresses.
D.
* Create a network lag app-server and service account sa-db. * Add the tag to the application servers and associate the service account with the database servers. * Create an egress firewall rule to allow network traffic from source network tag app-server to target service account sa-db.
Answers
D.
* Create a network lag app-server and service account sa-db. * Add the tag to the application servers and associate the service account with the database servers. * Create an egress firewall rule to allow network traffic from source network tag app-server to target service account sa-db.
Suggested answer: C
asked 18/09/2024
Emily Luijten
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first