Examtopics

AWS Certified SysOps Administrator - Associate
  • Topic 1 Question 256

    Application A runs on Amazon EC2 instances behind a Network Load Balancer (NLB). The EC2 instances are in an Auto Scaling group and are in the same subnet that is associated with the NLB. Other applications from an on-premises environment cannot communicate with Application A on port 8080.

    To troubleshoot the issue, a SysOps administrator analyzes the flow logs. The flow logs include the following records:

    What is the reason for the rejected traffic?

    • The security group of the EC2 instances has no Allow rule for the traffic from the NLB.

    • The security group of the NLB has no Allow rule for the traffic from the on-premises environment.

    • The ACL of the on-premises environment does not allow traffic to the AWS environment.

    • The network ACL that is associated with the subnet does not allow outbound traffic for the ephemeral port range.


    シャッフルモード