Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 116 Topic 12 Discussion

Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 116 Topic 12 Discussion

SAA-C03 Exam Topic 12 Question 116 Discussion:
Question #: 116
Topic #: 12

A company is designing a serverless application to process a large number of events within an AWS account. The application saves the events to a data warehouse for further analysis. The application sends incoming events to an Amazon SQS queue. Traffic between the application and the SQS queue must not use public IP addresses.


A.

Create a VPC endpoint for Amazon SQS. Set the queue policy to deny all access except from the VPC endpoint.


B.

Configure server-side encryption with SQS-managed keys (SSE-SQS).


C.

Configure AWS Security Token Service (AWS STS) to generate temporary credentials for resources that access the queue.


D.

Configure VPC Flow Logs to detect SQS traffic that leaves the VPC.


Get Premium SAA-C03 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.