A company's flagship application runs on a fleet of Amazon Elastic Compute Cloud (Amazon EC2) instances. As per the new policies, the system administrators are looking for the best way to provide secure shell access to Amazon Elastic Compute Cloud (Amazon EC2) instances without opening new ports or using public IP addresses. Which tool/service will help you achieve this requirement?
Question
A company's flagship application runs on a fleet of Amazon Elastic Compute Cloud (Amazon EC2) instances. As per the new policies, the system administrators are looking for the best way to provide secure shell access to Amazon Elastic Compute Cloud (Amazon EC2) instances without opening new ports or using public IP addresses. Which tool/service will help you achieve this requirement?
Solution
The tool/service that will help you achieve this requirement is AWS Systems Manager Session Manager. Session Manager provides secure and auditable instance management without the need to open inbound ports, maintain bastion hosts, or manage SSH keys. It also eliminates the need to use public IP addresses for instances.
Similar Questions
A company wants to improve its security and audit posture by limiting Amazon EC2 inbound access.What should the company use to access instances remotely instead of opening inbound SSH ports and managing SSH keys?Network ACLsEC2 key pairsAWS Identity and Access Management (IAM)AWS Systems Manager Session Manager
Write a Bash script to perform these instruction:1. Infrastructure Setup 1.1. EC2 Instance Launch Proper launch of EC2 instances with Amazon Linux, Ubuntu, and CentOS.Configuration of instance attributes such as instance type, security groups, and key pairs.1.2. Security Measures Appropriate configuration of security groups to ensure optimal security measures.Proper setup of key pairs for secure remote access.2. Remote Execution and Deployment (30 points):2.1. Script Upload (10 points):Successful upload of the enhanced script to a centralised server.Secure handling of the script to prevent unauthorizedaccess.2.2. Remote Execution (10 points):Proper execution of the script on each instance remotelyHandling of dependencies and adjustments for different distributions.2.3. Apache Deployment (5 points):Successful deployment of the Apache web server oneach instance.Verification of the Apache service status.2.4. Sample Web Application Deployment (5 points):Successful deployment of a sample web application oneach instance.Verification of web application accessibility.
An organization has implemented a private cloud infrastructure. The security administrator is asked to secure the infrastructure from potential threats. What three tactics can be implemented to protect the private cloud? (Choose three.)Select one or more:Test inbound and outbound traffic.Disable firewalls.Grant administrative rights.Update devices with security fixes and patches.Disable ping, probing, and port scanning.Hire a consultant.
Which AWS service or feature acts as a firewall for Amazon EC2 instances?
A company created an Amazon EC2 instance. The company wants to control the incoming and outgoing network traffic at the instance level. Which AWS resource or service will meet this requirement?a.Security groupsb.Network Access Analyzerc.VPC endpointsd.AWS Shield
Upgrade your grade with Knowee
Get personalized homework help. Review tough concepts in more detail, or go deeper into your topic by exploring other relevant questions.