SCS-C02 · Question #93
A company is hosting multiple applications within a single VPC in its AWS account. The applications are running behind an Application Load Balancer that is associated with an AWS WAF web ACL. The comp
Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #93. The question stem and answer options stay visible for context.
Question
A company is hosting multiple applications within a single VPC in its AWS account. The applications are running behind an Application Load Balancer that is associated with an AWS WAF web ACL. The company's security team has identified that multiple port scans are originating from a specific range of IP addresses on the internet. A security engineer needs to deny access from the offending IP addresses. Which solution will meet these requirements?
Options
- AModify the AWS WAF web ACL with an IP set match rule statement to deny incoming requests
- BAdd a rule to all security groups to deny the incoming requests from the IP address range.
- CModify the AWS WAF web ACL with a rate-based rule statement to deny the incoming requests
- DConfigure the AWS WAF web ACL with regex match conditions. Specify a pattern set to deny the
Unlock SCS-C02 to see the answer
You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.