Examtopics

AWS Certified Solutions Architect - Associate
  • Topic 1 Question 159

    A company is running a publicly accessible serverless application that uses Amazon API Gateway and AWS Lambda. The application’s traffic recently spiked due to fraudulent requests from botnets.

    Which steps should a solutions architect take to block requests from unauthorized users?

    2 つ選択
    • Create a usage plan with an API key that is shared with genuine users only.

    • Integrate logic within the Lambda function to ignore the requests from fraudulent IP addresses.

    • Implement an AWS WAF rule to target malicious requests and trigger actions to filter them out.

    • Convert the existing public API to a private API. Update the DNS records to redirect users to the new API endpoint.

    • Create an IAM role for each user attempting to access the API. A user will assume the role when making the API call.


    シャッフルモード