A company has two VPCs in the same AWS Region and in the same AWS account. Each VPC uses a CIDR block that does not overlap with the CIDR block of the other VPC. One VPC contains AWS Lambda functions that run inside a subnet that accesses the internet through a NAT gateway. The Lambda functions require access to a publicly accessible Amazon Aurora MySQL database that is running in the other VPC.
A security engineer determines that the Aurora database uses a security group rule that allows connections from the NAT gateway IP address that the Lambda functions use. The company’s security policy states that no database should be publicly accessible.
What is the MOST secure way that the security engineer can provide the Lambda functions with access to the Aurora database?
tainh
Highly Voted 2 years, 6 months agoToptip
Most Recent 2 years ago6_8ftwin
2 years agoITGURU51
2 years, 1 month agoGhouley
2 years, 1 month agoisokalau
2 years, 2 months agoGreen53
1 year, 11 months agoSai123
2 years, 2 months agoSai123
2 years, 2 months agoNocky24
2 years, 5 months agosecdaddy
2 years, 5 months agosecdaddy
2 years, 5 months agosecdaddy
2 years, 5 months agosahanpere
2 years, 5 months agosecdaddy
2 years, 5 months agoD2
2 years, 6 months agoAdamWest
2 years, 6 months agoluisfsm_111
2 years, 7 months ago