Spring Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Amazon Web Services AWS Certified CloudOps Engineer - Associate SOA-C03 Question # 35 Topic 4 Discussion

Amazon Web Services AWS Certified CloudOps Engineer - Associate SOA-C03 Question # 35 Topic 4 Discussion

SOA-C03 Exam Topic 4 Question 35 Discussion:
Question #: 35
Topic #: 4

A CloudOps engineer creates a new VPC that contains a private subnet, a security group that allows all outbound traffic, and an endpoint for Amazon EC2 Instance Connect in a private subnet. The CloudOps engineer associates the security group with EC2 Instance Connect.

The CloudOps engineer launches an EC2 instance from an Amazon Linux Amazon Machine Image (AMI) in the private subnet. The CloudOps engineer launches the EC2 instance without an SSH key pair.

The CloudOps engineer tries to connect to the instance by using the EC2 Instance Connect endpoint. However, the connection fails.

How can the CloudOps engineer connect to the instance?


A.

Create an inbound rule in the security group to allow HTTPS traffic on port 443 from the private subnet.


B.

Create an inbound rule in the security group to allow SSH traffic on port 22 from the private subnet.


C.

Create an IAM instance profile that allows AWS Systems Manager Session Manager to access the EC2 instance. Associate the instance profile with the instance.


D.

Recreate the EC2 instance. Associate an SSH key pair with the instance.


Get Premium SOA-C03 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.