Salesforce Certified Heroku Architect (Plat-Arch-206) Heroku-Architect Question # 11 Topic 2 Discussion

Salesforce Certified Heroku Architect (Plat-Arch-206) Heroku-Architect Question # 11 Topic 2 Discussion

Heroku-Architect Exam Topic 2 Question 11 Discussion:
Question #: 11
Topic #: 2

Universal Containers is developing a Salesforce app thatinvokes a Heroku app's web service, which asynchronously generates customer invoices. The Heroku app is deployed to a Private Space. When an invoice is ready, the Heroku app sends a POST request to the Salesforce REST API. Which two options should an Architect recommend to ensure that neither the Salesforce nor the Heroku app is accessible from the public internet? Choose 2 answers.


A.

Restrict the Private Space's trusted IP range to Salesforce IP addresses


B.

Restrict the Private Space's trusted IP range to Universal Containers' VPN


C.

Restrict the Salesforce connected app's login IP ranges to Universal Containers' VPN


D.

Restrict the Salesforce connected app's login IP ranges to the stable outbound IP addresses of the Private Space


Get Premium Heroku-Architect Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.