ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 534 - SCS-C01 discussion

Report
Export

A company is attempting to conduct forensic analysis on an Amazon EC2 instance, but the company is unable to connect to the instance by using AWS Systems Manager Session Manager. The company has installed AWS Systems Manager Agent (SSM Agent) on the EC2 instance.

The EC2 instance is in a subnet in a VPC that does not have an internet gateway attached. The company has associated a security group with the EC2 instance. The security group does not have inbound or outbound rules. The subnet's network ACL allows all inbound and outbound traffic.

Which combination of actions will allow the company to conduct forensic analysis on the EC2 instance without compromising forensic data? (Select THREE.)

A.
Update the EC2 instance security group to add a rule that allows outbound traffic on port 443 for 0.0.0.0/0.
Answers
A.
Update the EC2 instance security group to add a rule that allows outbound traffic on port 443 for 0.0.0.0/0.
B.
Update the EC2 instance security group to add a rule that allows inbound traffic on port 443 to the VPC's CIDR range.
Answers
B.
Update the EC2 instance security group to add a rule that allows inbound traffic on port 443 to the VPC's CIDR range.
C.
Create an EC2 key pair. Associate the key pair with the EC2 instance.
Answers
C.
Create an EC2 key pair. Associate the key pair with the EC2 instance.
D.
Create a VPC interface endpoint for Systems Manager in the VPC where the EC2 instance is located.
Answers
D.
Create a VPC interface endpoint for Systems Manager in the VPC where the EC2 instance is located.
E.
Attach a security group to the VPC interface endpoint. Allow inbound traffic on port 443 to the VPC's CIDR range.
Answers
E.
Attach a security group to the VPC interface endpoint. Allow inbound traffic on port 443 to the VPC's CIDR range.
F.
Create a VPC interface endpoint for the EC2 instance in the VPC where the EC2 instance is located.
Answers
F.
Create a VPC interface endpoint for the EC2 instance in the VPC where the EC2 instance is located.
Suggested answer: B, C, F
asked 16/09/2024
Gennadiy Volkov
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first