Pre-Winter Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Alibaba Cloud Certified Professional: Cloud Architect CAP-C01 Question # 5 Topic 1 Discussion

Alibaba Cloud Certified Professional: Cloud Architect CAP-C01 Question # 5 Topic 1 Discussion

CAP-C01 Exam Topic 1 Question 5 Discussion:
Question #: 5
Topic #: 1

A company has a web server running on an Elastic Compute Service (ECS) instance that is bound with an Elastic IP address. The ECS instance resides in a default security group within a VPC. The network ACL has been modified to block all traffic. Keran is a Cloud Architect and has been assigned the task of making the web server accessible from everywhere on port 443.

Which combination of steps can Keran take to accomplish this task? (Correct answers: 2)


A.

Create a security group rule to allow TCP port 443 to destination 0.0.0.0/0.


B.

Update the network ACL to allow inbound TCP port 443 from source 0.0.0.0/0 and outbound TCP ports 1024–65535 to destination 0.0.0.0/0.


C.

Create a security group rule to allow TCP port 443 from source 0.0.0.0/0.


D.

Update the network ACL to allow TCP port 443 from source 0.0.0.0/0.


E.

Update the network ACL to allow inbound/outbound TCP port 443 from source 0.0.0.0/0 and to destination 0.0.0.0/0.


Get Premium CAP-C01 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.