Independence Day Deal! Unlock 25% OFF Today – Limited-Time Offer - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Amazon Exam ANS-C01 Topic 7 Question 27 Discussion

Actual exam question for Amazon's ANS-C01 exam
Question #: 27
Topic #: 7
[All ANS-C01 Questions]

A company is using third-party firewall appliances to monitor and inspect traffic on premises The company wants to use this same model on AWS. The company has a single VPC with an internet gateway. The VPC has a fleet of web servers that run on Amazon EC2 instances that are managed by an Auto Scaling group.

The company's network team needs to work with the security team to establish inline inspection of all packets that are sent to and from the web servers. The solution must scale as the fleet of virtual firewall appliances scales.

Which combination of steps should the network team take to implement this solution? (Select THREE.)

Show Suggested Answer Hide Answer

Contribute your Thoughts:

Rolland
1 months ago
Ah, the joys of networking and security on AWS. I bet the network and security teams are already arguing over the best approach. Time to put on my diplomat hat!
upvoted 0 times
...
Olene
1 months ago
I'm feeling pretty confident about this one. The steps seem straightforward, but I'll need to double-check that I've selected the correct combination.
upvoted 0 times
...
Dorothy
1 months ago
Haha, I bet the security team is going to have a field day with this one. Gotta make sure we get all the firewall settings just right, or it's going to be a mess!
upvoted 0 times
Brunilda
7 days ago
C: And update the route tables to direct traffic to the Gateway Load Balancer. It's crucial for the setup.
upvoted 0 times
...
Alishia
8 days ago
B: Don't forget to create a security group for the firewall appliances and allow the necessary ports.
upvoted 0 times
...
Jaclyn
13 days ago
A: We need to create a new VPC and deploy the firewall appliances. Don't forget to add them as targets for the Gateway Load Balancer.
upvoted 0 times
...
Nu
24 days ago
A: We need to create a new VPC and deploy the firewall appliances. Add them as targets to the Gateway Load Balancer.
upvoted 0 times
...
...
Delsie
2 months ago
Okay, let's see. I think the key is to create a Gateway Load Balancer and add the firewall appliances as targets. But which security group settings and route table configurations do I need to get this right?
upvoted 0 times
Rosenda
14 days ago
E) Update the internet gateway route table and the web server route table to send traffic to and from the internet to the VPC endpoint ID of the Gateway Load Balancer. Update the subnet route table that is associated with the Gateway Load Balancer endpoint to direct internet traffic to the internet gateway.
upvoted 0 times
...
Lisha
18 days ago
B) Create a security group for use with the firewall appliances, and allow port 443. Allow a port for the Gateway Load Balancer to perform health checks.
upvoted 0 times
...
Herman
28 days ago
A) Create a new VPC, and deploy a fleet of firewall appliances. Create a Gateway Load Balancer. Add the firewall appliances as targets.
upvoted 0 times
...
...
Jeniffer
2 months ago
Hmm, this seems like a tricky question. I'll need to carefully consider the steps to implement the inline inspection of traffic using the firewall appliances.
upvoted 0 times
Cassie
25 days ago
E) Update the internet gateway route table and the web server route table to send traffic to and from the internet to the VPC endpoint ID of the Gateway Load Balancer. Update the subnet route table that is associated with the Gateway Load Balancer endpoint to direct internet traffic to the internet gateway.
upvoted 0 times
...
Rose
1 months ago
A) Create a new VPC, and deploy a fleet of firewall appliances. Create a Gateway Load Balancer. Add the firewall appliances as targets.
upvoted 0 times
...
...
Karan
2 months ago
We should also update the internet gateway route table and the web server route table to send traffic to and from the internet to the VPC endpoint ID of the Gateway Load Balancer.
upvoted 0 times
...
Pearlie
2 months ago
I agree. We also need to create a Gateway Load Balancer and add the firewall appliances as targets.
upvoted 0 times
...
Heike
3 months ago
I think we should create a new VPC and deploy a fleet of firewall appliances.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77