Amazon Web Services AWS Certified SysOps Administrator - Associate (SOA-C02) SOA-C02 Question # 37 Topic 4 Discussion

Amazon Web Services AWS Certified SysOps Administrator - Associate (SOA-C02) SOA-C02 Question # 37 Topic 4 Discussion

SOA-C02 Exam Topic 4 Question 37 Discussion:
Question #: 37
Topic #: 4

The SysOps administrator must modify the AWS Config rule that deletes noncompliant SSH inbound rules to update the rule to allow SSH from specific trusted IP addresses instead.

Options:


A.

Create a new AWS Systems Manager Automation runbook that adds an IP set to the security group's inbound rule. Update the AWS Config rule to change the automatic remediation action to use the new runbook.


B.

Create a new AWS Systems Manager Automation runbook that updates the security group's inbound rule with the IP addresses from the business units. Update the AWS Config rule to change the automatic remediation action to use the new runbook.


C.

Create an AWS Lambda function that adds an IP set to the security group's inbound rule. Update the AWS Config rule to change the automatic remediation action to use the Lambda function.


D.

Create an AWS Lambda function that updates the security group's inbound rule with the IP addresses from the business units. Update the AWS Config rule to change the automatic remediation action to use the Lambda function.


Get Premium SOA-C02 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.