Amazon
SOA-C02 · Question #86
Malicious traffic is reaching company web servers from a single IP address located in another country. The SysOps Administrator is tasked with blocking this IP address. How should the Administrator im
Sign in or unlock SOA-C02 to reveal the answer and full explanation for question #86. The question stem and answer options stay visible for context.
Submitted by deeparc· Mar 30, 2026Security and Compliance
Question
Malicious traffic is reaching company web servers from a single IP address located in another country. The SysOps Administrator is tasked with blocking this IP address. How should the Administrator implement the restriction?
Options
- AEdit the security group for the web servers and add a deny entry for the IP address
- BEdit the network access control list for the web server subnet and add a deny entry for the IP
- CEdit the VPC route table to route the malicious IP address to a black hole
- DUse Amazon CloudFront's geo restriction feature to block traffic from the IP address
Unlock SOA-C02 to see the answer
You've previewed enough free SOA-C02 questions. Unlock SOA-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#NACL#IP blocking#security groups#network security