ECCouncil EC-Council Certified Cloud Security Engineer (CCSE) 312-40 Question # 19 Topic 2 Discussion

ECCouncil EC-Council Certified Cloud Security Engineer (CCSE) 312-40 Question # 19 Topic 2 Discussion

312-40 Exam Topic 2 Question 19 Discussion:
Question #: 19
Topic #: 2

Scott Herman works as a cloud security engineer in an IT company. His organization has deployed a 3-tier web application in the same Google Cloud Virtual Private Cloud. Each tier (web interface (UI), API, and database) is scaled independently of others. Scott Herman obtained a requirement that the network traffic should always access the database using the API and any request coming directly from the web interface to the database should not be allowed. How should Scott configure the network with minimal steps?


A.

By adding tags to each tier and setting up firewall rules to allow the desired traffic flow


B.

By adding tags to each tier and setting up routes to allow the desired traffic flow


C.

By setting up software-based firewalls on individual VMs


D.

By adding each tier to a different subnetwork


Get Premium 312-40 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.