A company created an Amazon EC2 instance. The company wants to control the incoming and outgoing network traffic at the instance level. Which AWS resource or service will meet this requirement?a.Security groupsb.Network Access Analyzerc.VPC endpointsd.AWS Shield
Question
A company created an Amazon EC2 instance. The company wants to control the incoming and outgoing network traffic at the instance level. Which AWS resource or service will meet this requirement?a.Security groupsb.Network Access Analyzerc.VPC endpointsd.AWS Shield
Solution
The correct answer is a. Security groups.
Here's why:
Amazon EC2 instances can be controlled using Security Groups at the instance level. A security group acts as a virtual firewall for your instance to control inbound and outbound traffic. When you launch an instance in a VPC, you can assign up to five security groups to the instance. Security groups act at the instance level, not the subnet level. Therefore, each instance in a subnet in your VPC can be assigned to a different set of security groups.
Network Access Analyzer, VPC endpoints, and AWS Shield do not provide the ability to control incoming and outgoing network traffic at the instance level. They serve different purposes within the AWS ecosystem.
Similar Questions
Which AWS services or features have the capability to manage VPC traffic? (Choose TWO.)Amazon ConnectSecurity groupsNetwork ACLsAWS Direct ConnectAmazon GuardDuty
Which AWS service or feature acts as a firewall for Amazon EC2 instances?
Which critical AWS service automatically distributes incoming application traffic across many target groups of EC2 instances, containers, and IP addresses?
Which AWS service would you use to create a logically isolated section of the AWS Cloud where you can launch AWS resources in your virtual network?Question 4Answera.Subnetb.Virtual Private Network (VPN)c.Virtual private Cloud (VPC)d.Network Access Control List (Network ACL)
An e-commerce company would like to provide a secured access to AWS services for its employees. Which of the following AWS services can the company use to achieve this?Question 37Answera.AWS Direct Connectb.AWS Snowballc.Amazon S3 Transfer Acceleration (Amazon S3TA)d.AWS Identity and Access Management (IAM)
Upgrade your grade with Knowee
Get personalized homework help. Review tough concepts in more detail, or go deeper into your topic by exploring other relevant questions.