nerdexam
AmazonAmazon

DEA-C01 · Question #234

DEA-C01 Question #234: Real Exam Question with Answer & Explanation

Sign in or unlock DEA-C01 to reveal the answer and full explanation for question #234. The question stem and answer options stay visible for context.

Data Security and Governance

Question

A company has a data pipeline that uses an Amazon RDS instance, AWS Glue jobs, and an Amazon S3 bucket. The RDS instance and AWS Glue jobs run in a private subnet of a VPC and in the same security group. A user made a change to the security group that prevents the AWS Glue jobs from connecting to the RDS instance. After the change, the security group contains a single rule that allows inbound SSH traffic from a specific IP address. The company must resolve the connectivity issue. Which solution will meet this requirement?

Options

  • AAdd an inbound rule that allows all TCP traffic on all TCP ports. Set the security group as the
  • BAdd an inbound rule that allows all TCP traffic on all UDP ports. Set the private IP address of the
  • CAdd an inbound rule that allows all TCP traffic on all TCP ports. Set the DNS name of the RDS
  • DReplace the source of the existing SSH rule with the private IP address of the RDS instance.

Unlock DEA-C01 to see the answer

You've previewed enough free DEA-C01 questions. Unlock DEA-C01 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Security Groups#VPC Networking#AWS Glue#Amazon RDS
Full DEA-C01 PracticeBrowse All DEA-C01 Questions