Amazon Web Services AWS Certified SysOps Administrator - Associate SOA-C01 Question # 29 Topic 3 Discussion

Amazon Web Services AWS Certified SysOps Administrator - Associate SOA-C01 Question # 29 Topic 3 Discussion

SOA-C01 Exam Topic 3 Question 29 Discussion:
Question #: 29
Topic #: 3

A security audit revealed that the security groups in a VPC have ports 22 and 3389 open to all. introducing a possible threat that instances can be stopped or configurations can be modified. A SysOps administrator needs to automate remediation.

What should the administrator do to meet these requirements?


A.

Create an 1AM managed policy lo deny access to ports 22 and 3389 on any security groups in a VPC.


B.

Define an AWS Config rule and remediation action with AWS Systems Manager automation documents.


C.

Enable AWS Trusted Advisor to remediate public port access.


D.

Use AWS Systems Manager configuration compliance to remediate public port access.


Get Premium SOA-C01 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.