nerdexam
AmazonAmazon

CLF-C02 · Question #671

CLF-C02 Question #671: Real Exam Question with Answer & Explanation

The correct answer is C: Network ACLs. Network ACLs act as a stateless, subnet-level firewall that controls inbound and outbound traffic for the subnets containing your EC2 instances. Security groups serve as stateful, instance-level firewalls, letting you define permitted inbound and outbound traffic rules directly o

Submitted by manish99· Mar 6, 2026Security and Compliance

Question

Which AWS services or features can control network traffic to an Amazon EC2 instance? (Choose two.)

Options

  • AAWS CloudTrail
  • BAmazon CloudWatch
  • CNetwork ACLs
  • DSecurity groups
  • EVPC Flow Logs

Explanation

Network ACLs act as a stateless, subnet-level firewall that controls inbound and outbound traffic for the subnets containing your EC2 instances. Security groups serve as stateful, instance-level firewalls, letting you define permitted inbound and outbound traffic rules directly on your EC2 instances.

Community Discussion

No community discussion yet for this question.

Full CLF-C02 PracticeBrowse All CLF-C02 Questions