Examtopics

AWS Certified SysOps Administrator - Associate
  • Topic 1 Question 275

    A company needs to view a list of security groups that are open to the internet on port 3389.

    What should a SysOps administrator do to meet this requirement?

    • Configure Amazon GuardDuty to scan security groups and report unrestricted access on port 3389.

    • Configure a service control policy (SCP) to identify security groups that allow unrestricted access on port 3389.

    • Use AWS Identity and Access Management Access Analyzer to find any instances that have unrestricted access on port 3389.

    • Use AWS Trusted Advisor to find security groups that allow unrestricted access on port 3389.


    シャッフルモード