A company hosts its applications on Amazon EC2 instances. The company must use SSL/TLS connections that encrypt data in transit to communicate securely with AWS infrastructure that is managed by a customer.
A data engineer needs to implement a solution to simplify the generation, distribution, and rotation of digital certificates. The solution must automatically renew and deploy SSL/TLS certificates.
Which solution will meet these requirements with the LEAST operational overhead?
The best solution for managing SSL/TLS certificates on EC2 instances with minimal operational overhead is to use AWS Certificate Manager (ACM). ACM simplifies certificate management by automating the provisioning, renewal, and deployment of certificates.
AWS Certificate Manager (ACM):
ACM manages SSL/TLS certificates for EC2 and other AWS resources, including automatic certificate renewal. This reduces the need for manual management and avoids operational complexity.
ACM also integrates with other AWS services to simplify secure connections between AWS infrastructure and customer-managed environments.
Alternatives Considered:
A (Self-managed certificates): Managing certificates manually on EC2 instances increases operational overhead and lacks automatic renewal.
C (Secrets Manager automation): While Secrets Manager can store keys and certificates, it requires custom automation for rotation and does not handle SSL/TLS certificates directly.
D (ECS Service Connect): This is unrelated to SSL/TLS certificate management and would not address the operational need.
Tammara
3 months agoMargurite
3 months agoEstrella
3 months agoMarvel
4 months agoDeandrea
4 months agoCarlee
4 months agoJackie
4 months agoGraciela
4 months agoElke
5 months agoChanel
5 months agoHerman
5 months agoGlynda
5 months agoVeronika
5 months agoFiliberto
1 year agoMabel
1 year agoLavonda
1 year agoDemetra
1 year agoRosalyn
1 year agoChantell
1 year agoLawanda
1 year agoLavonne
1 year agoNancey
1 year agoDaren
1 year agoLauna
1 year agoArtie
1 year agoMa
1 year agoLouvenia
1 year agoVivienne
1 year agoMona
1 year agoTomoko
1 year agoMike
1 year agoLoren
1 year agoAzalee
1 year agoGearldine
1 year agoTasia
1 year agoVivienne
1 year ago