ANS-C01 exam dumps

ANS-C01 practice question 79 of 513

AWS Certified Advanced Networking - Specialty. Expert level, Amazon Web Services. Free question with the correct answer and a full explanation.

ANS-C01 Question 79

Select 2

Your company is deploying a web application on Amazon Elastic Kubernetes Service (Amazon EKS) behind an Application Load Balancer (ALB). To enhance security and performance, you need to integrate the ALB with other AWS services. The requirements include: (1) Protecting the application against common web exploits, (2) Improving the latency for global users, and (3) Securing the communication with HTTPS. Which combination of AWS services would best meet these requirements?

  1. A

    AWS WAF, Amazon CloudFront, and AWS Certificate Manager (ACM)

  2. B

    AWS Global Accelerator, Amazon Route 53, and AWS Certificate Manager (ACM)

  3. C

    AWS WAF, AWS Global Accelerator, and AWS Certificate Manager (ACM)

  4. D

    AWS WAF, Amazon CloudFront, and Amazon Route 53

Show answer and explanation

Correct answers: A, C

Explanation

To meet the requirements, you need a combination of services that provide security, performance optimization, and HTTPS support. AWS WAF addresses the need for protection against web exploits, AWS Global Accelerator or Amazon CloudFront improves latency for global users, and AWS Certificate Manager (ACM) simplifies SSL/TLS certificate management for HTTPS. Options 1 and 3 fulfill all these requirements, making them the correct answers.

  • A. Correct.

    This option is correct because AWS WAF provides protection against web exploits, Amazon CloudFront improves latency for global users by caching content closer to them, and AWS Certificate Manager (ACM) simplifies the management of SSL/TLS certificates for securing HTTPS communication.

  • B. Incorrect.

    This option is incorrect because while AWS Global Accelerator can improve latency for global users and ACM secures HTTPS communication, it does not provide protection against web exploits. Route 53 is not directly relevant for this scenario as it primarily handles DNS routing.

  • C. Correct.

    This option is correct because AWS WAF protects against web exploits, AWS Global Accelerator improves latency by routing traffic to endpoints closer to users, and ACM secures HTTPS communication. This combination aligns with all the requirements.

  • D. Incorrect.

    This option is incorrect because while AWS WAF protects against web exploits and Amazon CloudFront improves latency, Amazon Route 53 does not contribute directly to securing HTTPS communication or addressing the stated requirements.

Timed practice exam

Take a ANS-C01 practice test under exam conditions

65 questions in 170 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam