A startup company hosts a fleet of Amazon EC2 instances in private subnets using the latest Amazon Linux 2 AMI. The company’s engineers rely heavily on SSH access to the instances for troubleshooting.
The company’s existing architecture includes the following:
• A VPC with private and public subnets, and a NAT gateway.
• Site-to-Site VPN for connectivity with the on-premises environment.
• EC2 security groups with direct SSH access from the on-premises environment.
The company needs to increase security controls around SSH access and provide auditing of commands run by the engineers.
Which strategy should a solutions architect use?
masetromain
Highly Voted 2 years, 7 months agomasetromain
2 years, 7 months agomasetromain
2 years, 7 months agoadrian202
1 year, 8 months agoGod_Is_Love
Highly Voted 2 years, 5 months agokgpoj
11 months, 2 weeks agoprincajen
Most Recent 1 month agoamministrazione
11 months, 3 weeks agogofavad926
1 year, 5 months ago8608f25
1 year, 6 months agorioisverycute
1 year, 7 months agodjeong95
1 year, 5 months agoChung234
1 year, 10 months agoNikkyDicky
2 years, 1 month agoSkyZeroZx
2 years, 2 months agomfsec
2 years, 4 months agoAjani
2 years, 5 months agolygf
2 years, 6 months agoDWsk
2 years, 6 months agolygf
2 years, 6 months agoanita_student
2 years, 5 months agomoota
2 years, 6 months agotinyflame
2 years, 6 months agojoefromnc
1 year, 11 months agorlf
1 year, 10 months ago