Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Amazon Exam ANS-C01 Topic 7 Question 27 Discussion

Actual exam question for Amazon's ANS-C01 exam
Question #: 27
Topic #: 7
[All ANS-C01 Questions]

A company is using third-party firewall appliances to monitor and inspect traffic on premises The company wants to use this same model on AWS. The company has a single VPC with an internet gateway. The VPC has a fleet of web servers that run on Amazon EC2 instances that are managed by an Auto Scaling group.

The company's network team needs to work with the security team to establish inline inspection of all packets that are sent to and from the web servers. The solution must scale as the fleet of virtual firewall appliances scales.

Which combination of steps should the network team take to implement this solution? (Select THREE.)

Show Suggested Answer Hide Answer

Contribute your Thoughts:

Rolland
18 days ago
Ah, the joys of networking and security on AWS. I bet the network and security teams are already arguing over the best approach. Time to put on my diplomat hat!
upvoted 0 times
...
Olene
19 days ago
I'm feeling pretty confident about this one. The steps seem straightforward, but I'll need to double-check that I've selected the correct combination.
upvoted 0 times
...
Dorothy
25 days ago
Haha, I bet the security team is going to have a field day with this one. Gotta make sure we get all the firewall settings just right, or it's going to be a mess!
upvoted 0 times
Nu
10 days ago
A: We need to create a new VPC and deploy the firewall appliances. Add them as targets to the Gateway Load Balancer.
upvoted 0 times
...
...
Delsie
1 months ago
Okay, let's see. I think the key is to create a Gateway Load Balancer and add the firewall appliances as targets. But which security group settings and route table configurations do I need to get this right?
upvoted 0 times
Lisha
4 days ago
B) Create a security group for use with the firewall appliances, and allow port 443. Allow a port for the Gateway Load Balancer to perform health checks.
upvoted 0 times
...
Herman
14 days ago
A) Create a new VPC, and deploy a fleet of firewall appliances. Create a Gateway Load Balancer. Add the firewall appliances as targets.
upvoted 0 times
...
...
Jeniffer
2 months ago
Hmm, this seems like a tricky question. I'll need to carefully consider the steps to implement the inline inspection of traffic using the firewall appliances.
upvoted 0 times
Cassie
10 days ago
E) Update the internet gateway route table and the web server route table to send traffic to and from the internet to the VPC endpoint ID of the Gateway Load Balancer. Update the subnet route table that is associated with the Gateway Load Balancer endpoint to direct internet traffic to the internet gateway.
upvoted 0 times
...
Rose
19 days ago
A) Create a new VPC, and deploy a fleet of firewall appliances. Create a Gateway Load Balancer. Add the firewall appliances as targets.
upvoted 0 times
...
...
Karan
2 months ago
We should also update the internet gateway route table and the web server route table to send traffic to and from the internet to the VPC endpoint ID of the Gateway Load Balancer.
upvoted 0 times
...
Pearlie
2 months ago
I agree. We also need to create a Gateway Load Balancer and add the firewall appliances as targets.
upvoted 0 times
...
Heike
2 months ago
I think we should create a new VPC and deploy a fleet of firewall appliances.
upvoted 0 times
...

Save Cancel