Amazon Web Services AWS Certified SysOps Administrator - Associate SOA-C01 Question # 35 Topic 4 Discussion

Amazon Web Services AWS Certified SysOps Administrator - Associate SOA-C01 Question # 35 Topic 4 Discussion

SOA-C01 Exam Topic 4 Question 35 Discussion:
Question #: 35
Topic #: 4

A company hosts a multi-tier ecommerce web application on AWS, and has recently been alerted to suspicious application traffic The architecture consists of Amazon EC2 instances deployed across multiple Availability Zones behind an Application Load Balancer (ALB) After examining the server logs, a sysops administrator determines that the suspicious traffic is an attempted SQL injection attack.

What should the sysops administrator do to prevent similar attacks?


A.

Install Amazon Inspector on the EC2 instances and configure a rules package Use the findings reports to identify and block SQL injection attacks.


B.

Modify the security group of the ALB Use the IP addresses from the logs to block the IP addresses where SQL injection originated.


C.

Create an AWS WAF web ACL in front of the ALB. Add an SQL injection rule to the web ACL Associate the web ACL to the ALB


D.

Enable Amazon GuardDuty in the AWS Region Use Amazon CloudWatch Events to trigger an AWS Lambda function response every time an SQL injection finding is discovered


Get Premium SOA-C01 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.