A company runs an e-commerce platform with front-end and e-commerce tiers. Both tiers run on LAMP stacks with the front-end instances running behind a load balancing appliance that has a virtual offering on AWS. Currently, the Operations team uses SSH to log in to the instances to maintain patches and address other concerns. The platform has recently been the target of multiple attacks, including:
✑ A DDoS attack.
✑ An SQL injection attack.
✑ Several successful dictionary attacks on SSH accounts on the web servers.
The company wants to improve the security of the e-commerce platform by migrating to AWS. The company's Solutions Architects have decided to use the following approach:
✑ Code review the existing application and fix any SQL injection issues.
✑ Migrate the web application to AWS and leverage the latest AWS Linux AMI to address initial security patching.
✑ Install AWS Systems Manager to manage patching and allow the system administrators to run commands on all instances, as needed. all
What additional steps will address
of the identified attack types while providing high availability and minimizing risk?
donathon
Highly Voted 3 years, 8 months agoAsds
3 years, 8 months agohilft
Most Recent 2 years, 10 months agoaandc
2 years, 11 months agobfal
3 years, 2 months agobfal
3 years, 2 months agobfal
3 years, 2 months agobfal
3 years, 2 months agoNi_yot
3 years, 3 months agoKiraguJohn
3 years, 5 months agoAkaAka4
3 years, 5 months agoAzureDP900
3 years, 6 months agoDeathFrmAbv
3 years, 7 months agoWhyIronMan
3 years, 7 months agoss160700
3 years, 7 months agomemester
3 years, 7 months agoWaiweng
3 years, 7 months ago01037
3 years, 7 months agoKian1
3 years, 7 months agoEbi
3 years, 7 months agobinhdx
3 years, 7 months ago