exam questions

Exam AWS-SysOps All Questions

View all questions & answers for the AWS-SysOps exam

Exam AWS-SysOps topic 1 question 890 discussion

Exam question from Amazon's AWS-SysOps
Question #: 890
Topic #: 1
[All AWS-SysOps Questions]

A company that hosts a multi-tier ecommerce web application on AWS has been alerted to suspicious application traffic. The architecture consists of Amazon EC2 instances deployed across multiple Availability Zones behind an Application Load Balancer (ALB). After examining the instance logs, a SysOps administrator determines that the suspicious traffic is an attempted SQL injection attack.
What should the SysOps administrator do to prevent similar attacks?

  • A. Create an Amazon CloudFront distribution with the ALB as the origin. Enable AWS Shield Advanced to protect from SQL injection attacks at edge locations.
  • B. Create an AWS WAF web ACL, and configure a SQL injection rule to add to the web ACL. Associate the WAF web ACL with the ALB.
  • C. Enable Amazon GuardDuty. Use Amazon EventBridge (Amazon CloudWatch Events) to trigger an AWS Lambda function every time GuardDuty detects SQL injection.
  • D. Install Amazon Inspector on the EC2 instances, and configure a rules package. Use the findings reports to identify and block SQL injection attacks.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
binhdt2611
Highly Voted 2 years, 7 months ago
it should be B - AWS WAF
upvoted 6 times
...
albert_kuo
Most Recent 9 months, 1 week ago
Selected Answer: B
AWS Web Application Firewall (WAF) is a security service that helps protect web applications from common web exploits and attacks, including SQL injection attacks. By creating a web ACL (Access Control List) and configuring a SQL injection rule to add to the web ACL, you can define custom rules to inspect incoming requests to the Application Load Balancer (ALB) and block any requests that contain SQL injection patterns.
upvoted 1 times
...
sapien45
2 years, 6 months ago
SQL Injection : WAF DDOS : Shield
upvoted 1 times
...
hazemtns
2 years, 7 months ago
B , Cause AWS shield for DDOS attacks
upvoted 1 times
random_007
2 years, 6 months ago
it has mentioned about SQL injection and as per below link AWS WAF can protect OWASP 10 vulnerability like sql injection, xss link :https://aws.amazon.com/waf/#:~:text=AWS%20WAF%20is%20a%20web,security%2C%20or%20consume%20excessive%20resources. Answer : B
upvoted 1 times
...
...
RicardoD
2 years, 7 months ago
B is the answer
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago