nerdexam
AmazonAmazon

MLS-C01 · Question #168

MLS-C01 Question #168: Real Exam Question with Answer & Explanation

Sign in or unlock MLS-C01 to reveal the answer and full explanation for question #168. The question stem and answer options stay visible for context.

Machine Learning Implementation and Operations

Question

A company provisions Amazon SageMaker notebook instances for its data science team and creates Amazon VPC interface endpoints to ensure communication between the VPC and the notebook instances. All connections to the Amazon SageMaker API are contained entirely and securely using the AWS network. However, the data science team realizes that individuals outside the VPC can still connect to the notebook instances across the internet. Which set of actions should the data science team take to fix the issue?

Options

  • AModify the notebook instances' security group to allow traffic only from the CIDR ranges of the
  • BCreate an IAM policy that allows the sagemaker:CreatePresignedNotebooklnstanceUrl and
  • CAdd a NAT gateway to the VPC. Convert all of the subnets where the Amazon SageMaker
  • DChange the network ACL of the subnet the notebook is hosted in to restrict access to anyone

Unlock MLS-C01 to see the answer

You've previewed enough free MLS-C01 questions. Unlock MLS-C01 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#SageMaker Notebook Security#IAM Access Control#VPC Networking#Private Connectivity
Full MLS-C01 PracticeBrowse All MLS-C01 Questions