Examtopics

AWS Certified Advanced Networking - Specialty
  • Topic 1 Question 209

    A company has VPCs across 50 AWS accounts and is using AWS Organizations. The company wants to implement web filtering. The requirements for how the traffic must be filtered are the same for all the VPCs. A network engineer plans to use AWS Network Firewall. The network engineer needs to implement a solution that minimizes the number of firewall policies and rule groups that are necessary for this web filtering.

    Which combination of steps will meet these requirements?

    3 つ選択
    • Create a firewall policy or rule group in each account.

    • Use SCPs to share the firewall policy or rule group.

    • Create a firewall policy or rule group in the management account

    • Use AWS Resource Access Manager (AWS RAM) to share the firewall policy or rule group.

    • Enable sharing within Organizations.

    • Create OUs to share the firewall policy or rule group.


    シャッフルモード