ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 208 - SAA-C03 discussion

Report
Export

A company is designing a cloud communications platform that is driven by APIs. The application is hosted on Amazon EC2 instances behind a Network Load Balancer (NLB). The company uses Amazon API Gateway to provide external users with access to the application through APIs. The company wants to protect the platform against web exploits like SQL injection and also wants to detect and mitigate large, sophisticated DDoS attacks. Which combination of solutions provides the MOST protection? (Select TWO.)

A.
Use AWS WAF to protect the NLB.
Answers
A.
Use AWS WAF to protect the NLB.
B.
Use AWS Shield Advanced with the NLB.
Answers
B.
Use AWS Shield Advanced with the NLB.
C.
Use AWS WAF to protect Amazon API Gateway.
Answers
C.
Use AWS WAF to protect Amazon API Gateway.
D.
Use Amazon GuardDuty with AWS Shield Standard.
Answers
D.
Use Amazon GuardDuty with AWS Shield Standard.
E.
Use AWS Shield Standard with Amazon API Gateway.
Answers
E.
Use AWS Shield Standard with Amazon API Gateway.
Suggested answer: B, C

Explanation:

AWS Shield Advanced provides expanded DDoS attack protection for your Amazon EC2 instances, Elastic Load Balancing load balancers, CloudFront distributions, Route 53 hosted zones, and AWS Global Accelerator standard accelerators.AWS WAF is a web application firewall that lets you monitor the HTTP and HTTPS requests that are forwarded to your protected web application resources. You can protect the following resource types:Amazon CloudFront distribution Amazon API Gateway REST API Application Load Balancer AWS AppSync GraphQL API Amazon Cognito user pool https://docs.aws.amazon.com/waf/latest/developerguide/what-is-aws-waf.htm

asked 16/09/2024
Sergio Guerra
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first