nerdexam
Amazon

SCS-C02 · Question #129

A company needs complete encryption of the traffic between external users and an application. The company hosts the application on a fleet of Amazon EC2 instances that run in an Auto Scaling group beh

The correct answer is D. Import a new third-party certificate into AWS Certificate Manager (ACM). Associate the certificate. https://repost.aws/questions/QUIo7PWvZ3T6aFYCByhZ5f0A/load-certificate-on-alb-and-ec2

Submitted by lukas.cz· Mar 6, 2026Data Protection

Question

A company needs complete encryption of the traffic between external users and an application. The company hosts the application on a fleet of Amazon EC2 instances that run in an Auto Scaling group behind an Application Load Balancer (ALB). How can a security engineer meet these requirements?

Options

  • ACreate a new Amazon-issued certificate in AWS Secrets Manager. Export the certificate from
  • BCreate a new Amazon-issued certificate in AWS Certificate Manager (ACM). Associate the
  • CImport a new third-party certificate into AWS Identity and Access Management (IAM). Export the
  • DImport a new third-party certificate into AWS Certificate Manager (ACM). Associate the certificate

How the community answered

(45 responses)
  • A
    2% (1)
  • B
    4% (2)
  • C
    9% (4)
  • D
    84% (38)

Explanation

https://repost.aws/questions/QUIo7PWvZ3T6aFYCByhZ5f0A/load-certificate-on-alb-and-ec2

Topics

#end-to-end TLS#ALB#ACM certificate#HTTPS encryption

Community Discussion

No community discussion yet for this question.

Full SCS-C02 Practice