ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 150 - SOA-C02 discussion

Report
Export

A global company handles a large amount of personally identifiable information (Pll) through an internal web portal. The company's application runs in a corporate data center that is connected to AWS through an AWS Direct Connect connection. The application stores the Pll in Amazon S3.

According to a compliance requirement, traffic from the web portal to Amazon S3 must not travel across the internet. What should a SysOps administrator do to meet the compliance requirement?

A.
Provision an interface VPC endpoint for Amazon S3. Modify the application to use the interface endpoint.
Answers
A.
Provision an interface VPC endpoint for Amazon S3. Modify the application to use the interface endpoint.
B.
Configure AWS Network Firewall to redirect traffic to the internal S3 address.
Answers
B.
Configure AWS Network Firewall to redirect traffic to the internal S3 address.
C.
Modify the application to use the S3 path-style endpoint.
Answers
C.
Modify the application to use the S3 path-style endpoint.
D.
Set up a range of VPC network ACLs to redirect traffic to the Internal S3 address.
Answers
D.
Set up a range of VPC network ACLs to redirect traffic to the Internal S3 address.
Suggested answer: A

Explanation:

Using the interface endpoint, applications in your on-premises data center can easily query S3buckets over AWS Direct Connect or Site-to-Site VPN.https://aws.amazon.com/blogs/architecture/choosing-your-vpc-endpoint-strategy-for-amazon-s3/

asked 16/09/2024
Sairam Emmidishetti
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first