ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 536 - SAA-C03 discussion

Report
Export

A solutions architect is creating a new Amazon CloudFront distribution for an application. Some of the information submitted by users is sensitive. The application uses HTTPS but needs another layer of security. The sensitive information should.be protected throughout the entire application stack, and access to the information should be restricted to certain applications.

Which action should the solutions architect take?

A.
Configure a CloudFront signed URL.
Answers
A.
Configure a CloudFront signed URL.
B.
Configure a CloudFront signed cookie.
Answers
B.
Configure a CloudFront signed cookie.
C.
Configure a CloudFront field-level encryption profile.
Answers
C.
Configure a CloudFront field-level encryption profile.
D.
Configure CloudFront and set the Origin Protocol Policy setting to HTTPS Only for the Viewer Protocol Policy.
Answers
D.
Configure CloudFront and set the Origin Protocol Policy setting to HTTPS Only for the Viewer Protocol Policy.
Suggested answer: C

Explanation:

it allows the company to protect sensitive information submitted by users throughout the entire application stack and restrict access to certain applications. By configuring a CloudFront field-level encryption profile, the company can encrypt specific fields of user data at the edge locations before sending it to the origin servers. By using public-private key pairs, the company can ensure that only authorized applications can decrypt and access the sensitive information. Reference:

Field-Level Encryption

Encrypting and Decrypting Data

asked 16/09/2024
Karol Ligęza
28 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first