ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 465 - SCS-C01 discussion

Report
Export

A company needs to use HTTPS when connecting to its web applications to meet compliancerequirements. These web applications run in Amazon VPC on Amazon EC2 instances behind anApplication Load Balancer (ALB). A security engineer wants to ensure that the load balancer win onlyaccept connections over port 443. even if the ALB is mistakenly configured with an HTTP listenerWhich configuration steps should the security engineer take to accomplish this task?

A.
Create a security group with a rule that denies Inbound connections from 0.0.0 0/0 on port 00.Attach this security group to the ALB to overwrite more permissive rules from the ALB's default security group.
Answers
A.
Create a security group with a rule that denies Inbound connections from 0.0.0 0/0 on port 00.Attach this security group to the ALB to overwrite more permissive rules from the ALB's default security group.
B.
Create a network ACL that denies inbound connections from 0 0.0.0/0 on port 80 Associate the network ACL with the VPC s internet gateway
Answers
B.
Create a network ACL that denies inbound connections from 0 0.0.0/0 on port 80 Associate the network ACL with the VPC s internet gateway
C.
Create a network ACL that allows outbound connections to the VPC IP range on port 443 only.Associate the network ACL with the VPC's internet gateway.
Answers
C.
Create a network ACL that allows outbound connections to the VPC IP range on port 443 only.Associate the network ACL with the VPC's internet gateway.
D.
Create a security group with a single inbound rule that allows connections from 0.0.0 0/0 on port 443. Ensure this security group is the only one associated with the ALB
Answers
D.
Create a security group with a single inbound rule that allows connections from 0.0.0 0/0 on port 443. Ensure this security group is the only one associated with the ALB
Suggested answer: D
asked 16/09/2024
edoardo peraino
26 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first