Examtopics

AWS Certified SysOps Administrator - Associate
  • Topic 1 Question 293

    A company is building a web application on AWS. The company is using Amazon CloudFront with a domain name of www.example.com. All traffic to CloudFront must be encrypted in transit. The company already has provisioned an SSL certificate for www.example.com in AWS Certificate Manager (ACM).

    Which combination of steps should a SysOps administrator take to encrypt the traffic in transit?

    2 つ選択
    • For each cache behavior in the CloudFront distribution, modify the Viewer Protocol Policy setting to redirect HTTP to HTTPS.

    • For each cache behavior in the CloudFront distribution, modify the Viewer Protocol Policy setting to allow HTTP and HTTPS.

    • Enter the alternate domain name (CNAME) of www.example.com for the CloudFront distribution. Select the custom SSL certificate.

    • Configure an AWS WAF web ACL for the CloudFront distribution.

    • Configure CloudFront Origin Shield for the CloudFront origin.


    シャッフルモード