Amazon Web Services AWS Certified Machine Learning Engineer-Associate MLA-C01 Question # 19 Topic 2 Discussion

Amazon Web Services AWS Certified Machine Learning Engineer-Associate MLA-C01 Question # 19 Topic 2 Discussion

MLA-C01 Exam Topic 2 Question 19 Discussion:
Question #: 19
Topic #: 2

A company runs an Amazon SageMaker domain in a public subnet of a newly created VPC. The network is configured properly, and ML engineers can access the SageMaker domain.

Recently, the company discovered suspicious traffic to the domain from a specific IP address. The company needs to block traffic from the specific IP address.

Which update to the network configuration will meet this requirement?


A.

Create a security group inbound rule to deny traffic from the specific IP address. Assign the security group to the domain.


B.

Create a network ACL inbound rule to deny traffic from the specific IP address. Assign the rule to the default network Ad for the subnet where the domain is located.


C.

Create a shadow variant for the domain. Configure SageMaker Inference Recommender to send traffic from the specific IP address to the shadow endpoint.


D.

Create a VPC route table to deny inbound traffic from the specific IP address. Assign the route table to the domain.


Get Premium MLA-C01 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.