Topic 1 Question 15
A company recently migrated to AWS and wants to implement a solution to protect the traffic that flows in and out of the production VPC. The company had an inspection server in its on-premises data center. The inspection server performed specific operations such as traffic flow inspection and traffic filtering. The company wants to have the same functionalities in the AWS Cloud. Which solution will meet these requirements?
Use Amazon GuardDuty for traffic inspection and traffic filtering in the production VPC.
Use Traffic Mirroring to mirror traffic from the production VPC for traffic inspection and filtering.
Use AWS Network Firewall to create the required rules for traffic inspection and traffic filtering for the production VPC.
Use AWS Firewall Manager to create the required rules for traffic inspection and traffic filtering for the production VPC.
ユーザの投票
コメント(17)
- 正解だと思う選択肢: C
I agree with C. AWS Network Firewall is a stateful, managed network firewall and intrusion detection and prevention service for your virtual private cloud (VPC) that you created in Amazon Virtual Private Cloud (Amazon VPC). With Network Firewall, you can filter traffic at the perimeter of your VPC. This includes filtering traffic going to and coming from an internet gateway, NAT gateway, or over VPN or AWS Direct Connect.
👍 21BoboChow2022/10/11 - 正解だと思う 選択肢: C
I would recommend option C: Use AWS Network Firewall to create the required rules for traffic inspection and traffic filtering for the production VPC.
AWS Network Firewall is a managed firewall service that provides filtering for both inbound and outbound network traffic. It allows you to create rules for traffic inspection and filtering, which can help protect your production VPC.
Option A: Amazon GuardDuty is a threat detection service, not a traffic inspection or filtering service.
Option B: Traffic Mirroring is a feature that allows you to replicate and send a copy of network traffic from a VPC to another VPC or on-premises location. It is not a service that performs traffic inspection or filtering.
Option D: AWS Firewall Manager is a security management service that helps you to centrally configure and manage firewalls across your accounts. It is not a service that performs traffic inspection or filtering.
👍 19SilentMilli2023/01/06 - 正解だと思う選択肢: C
C. it works like a gatekeeper for connection coming in and out of the VPC.
👍 2Ello20232023/02/04
シャッフルモード