ExamQuestions.com

Register
Login
AWS Certified Security Specialty Exam Questions

Amazon

AWS Certified Security Specialty

16 / 310

Question 16:

A company hosts a popular web application that connects to an Amazon RDS MySQL DB instance running in a private VPC subnet created with default Network ACL settings. The IT Security department has a suspicion that a DoS attack is coming from a suspecting IP. How can you protect the subnets from this attack?

Answer options:

A.Change the Inbound Security Groups to deny access from the suspecting IP.
B.Change the Outbound Security Groups to deny access from the suspecting IP.
C.Change the Inbound NACL to deny access from the suspecting IP.
D.Change the Outbound NACL to deny access from the suspecting IP.