DBS-C01 · Question #275
A company uses AWS Lambda functions in a private subnet in a VPC to run application logic. The Lambda functions must not have access to the public internet. Additionally, all data communication must r
Sign in or unlock DBS-C01 to reveal the answer and full explanation for question #275. The question stem and answer options stay visible for context.
Question
A company uses AWS Lambda functions in a private subnet in a VPC to run application logic. The Lambda functions must not have access to the public internet. Additionally, all data communication must remain within the private network. As part of a new requirement, the application logic needs access to an Amazon DynamoDB table. What is the MOST secure way to meet this new requirement?
Options
- AProvision the DynamoDB table inside the same VPC that contains the Lambda functions
- BCreate a gateway VPC endpoint for DynamoDB to provide access to the table
- CUse a network ACL to only allow access to the DynamoDB table from the VPC
- DUse a security group to only allow access to the DynamoDB table from the VPC
Unlock DBS-C01 to see the answer
You've previewed enough free DBS-C01 questions. Unlock DBS-C01 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.