Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam SCS-C02 All Questions
Exam SCS-C02 All Questions

View all questions & answers for the SCS-C02 exam

Amazon Web Services AWS Certified Specialty SCS-C02 Question # 138 Topic 14 Discussion

SCS-C02 Exam Topic 14 Question 138 Discussion:
Question #: 138
Topic #: 14

A company is hosting multiple applications within a single VPC in its IAM account. The applications are running behind an Application Load Balancer that is associated with an IAM WAF web ACL. The company's security team has identified that multiple port scans are originating from a specific range of IP addresses on the internet.

A security engineer needs to deny access from the offending IP addresses.

Which solution will meet these requirements?


A.

Modify the IAM WAF web ACL with an IP set match rule statement to deny incoming requests from the IP address range.


B.

Add a rule to all security groups to deny the incoming requests from the IP address range.


C.

Modify the IAM WAF web ACL with a rate-based rule statement to deny the incoming requests from the IP address range.


D.

Configure the IAM WAF web ACL with regex match conditions. Specify a pattern set to deny the incoming requests based on the match condition


Get Premium SCS-C02 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.