nerdexam
Amazon

ANS-C01 · Question #235

A company needs to protect against potential botnet command and control traffic from any Amazon EC2 instances that is in in the company's AWS Environment. Which solution will meet these requirements?

The correct answer is B. Use Amazon Route 53 Resolver DNS Firewall. Add a rule to a rule group to use the. https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/resolver-dns-firewall-managed- domain-lists.html

Submitted by yousef_jo· Mar 6, 2026Network Security

Question

A company needs to protect against potential botnet command and control traffic from any Amazon EC2 instances that is in in the company's AWS Environment. Which solution will meet these requirements?

Options

  • AUse AWS Shield Advanced. Activate Shield Advanced protections on the EC2 instances to filter
  • BUse Amazon Route 53 Resolver DNS Firewall. Add a rule to a rule group to use the
  • CUse AWS WAF Bot Control. Configure a managed rule group that uses an AWS managed rule
  • DUse AWS Systems Manager. Run a Systems Manager Automation runbook on the EC2 instances

How the community answered

(29 responses)
  • A
    3% (1)
  • B
    72% (21)
  • C
    17% (5)
  • D
    7% (2)

Explanation

https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/resolver-dns-firewall-managed- domain-lists.html

Community Discussion

No community discussion yet for this question.

Full ANS-C01 Practice