exam questions

Exam AWS Certified Cloud Practitioner CLF-C02 All Questions

View all questions & answers for the AWS Certified Cloud Practitioner CLF-C02 exam

Exam AWS Certified Cloud Practitioner CLF-C02 topic 1 question 95 discussion

Which AWS service or tool can be used to set up a firewall to control traffic going into and coming out of an Amazon VPC subnet?

  • A. Security group
  • B. AWS WAF
  • C. AWS Firewall Manager
  • D. Network ACL
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
pietro167
Highly Voted 1 year, 1 month ago
Selected Answer: D
ACL = subnet, Security Groups = instances
upvoted 46 times
reddy187
6 months, 3 weeks ago
Correct : KeyWOrd: Subnet
upvoted 2 times
...
...
Penny357
Highly Voted 1 year ago
Selected Answer: C
The Question states "AWS service or tool can be 'used' to set up a firewall" So option is C. And Network ACL is not a AWS service or tool. Correct me if i am wrong.
upvoted 9 times
nani12e434
1 day, 1 hour ago
If the focus is solely on "setting up a firewall for a VPC subnet," Network ACLs (NACLs) are technically the mechanism you'd use. However, if the question is interpreted as "which AWS tool could manage such configurations on a broader scale," AWS Firewall Manager becomes a relevant answer.
upvoted 1 times
...
Taku2023
11 months, 2 weeks ago
AWS firewall Manager has nothing to do with VPC subnets
upvoted 2 times
...
BShelat
1 year ago
You are right. NACL is a list of rules. It is not a tool "to setup and manage" firewall. AWS Firewall Manager is a tool to setup, configure and manage AWS WAF and AWS Shield .
upvoted 4 times
...
Rahul_Ghai
1 year ago
The term Service is a broader classification. The key point is that Network Access Control List acts as a firewall to secure virtual private clouds (VPCs) and subnets. NACLs control and manage traffic in subnets
upvoted 1 times
...
...
Amin_013
Most Recent 2 weeks ago
Selected Answer: D
Network ACLs are used to control inbound and outbound traffic at the subnet level within an Amazon VPC. They provide a way to set up a firewall that operates at the network layer and are applied to all instances within a subnet.
upvoted 1 times
...
SrikanthNL
1 month ago
Selected Answer: C
TOOL, FIREWALL MANAGER = TOOL and is superset of NACL
upvoted 1 times
...
ShaiTay
2 months ago
Selected Answer: D
D. Network ACL - key word is subnet
upvoted 1 times
...
Kilobay1
3 months, 4 weeks ago
Selected Answer: D
Network ACLs are used to control inbound and outbound traffic at the subnet level within an Amazon VPC. They provide a way to set up a firewall that operates at the network layer and are applied to all instances within a subnet.
upvoted 1 times
...
EvilBeaver
5 months, 2 weeks ago
Selected Answer: D
As stated in the question, we're looking for a mechanism to control the subnet traffic, so it's a NACL.
upvoted 1 times
...
ChhatwaniB
6 months, 1 week ago
Answer D : Network Access Control Lists (NACLs) Act as a firewall to control traffic at the subnet level, allowing or denying specific inbound or outbound traffic.
upvoted 2 times
...
geocis
6 months, 4 weeks ago
Selected Answer: D
Like Pietro167 stated Network ACL = Subnet | Security Groups = Instances
upvoted 1 times
...
Val2344
8 months ago
Selected Answer: D
The correct answer is D. Network ACL (Access Control List). Network ACLs act as a firewall for controlling traffic in and out of a subnet in Amazon Virtual Private Cloud (VPC). They operate at the subnet level and evaluate traffic based on rules defined for inbound and outbound traffic.
upvoted 3 times
...
pqd
8 months, 1 week ago
ACL = sub-rede, grupos de segurança = instâncias (by pietro167) Perfect
upvoted 1 times
...
chalaka
8 months, 3 weeks ago
Selected Answer: D
D. Network ACL (Access Control List) Network ACLs act as a firewall for controlling traffic at the subnet level. They are stateless and operate at the subnet level, allowing or denying traffic based on rules defined for inbound and outbound traffic. Network ACLs provide an added layer of security by allowing you to specify rules that govern traffic at the network level, complementing the security groups that operate at the instance level.
upvoted 1 times
...
Gallileo9
8 months, 3 weeks ago
Selected Answer: D
Network ACL
upvoted 1 times
...
Nilupul21
10 months ago
Correct answer is NACL Security Group is used for setup inbound and outbound rules in instance levels not in subnet levels. The question ask for a service or tool which serves at subnet levels. So, this answer is not correct. NACL: Allows to setup rules at subnet levels. So this is the correct answer. Firewall Manager: This is used for a broader perspective. It simplifies administration and maintenance tasks across multiple AWS accounts for variety of protections like WAF, Shield, Security Groups and Network Firewall etc.
upvoted 2 times
...
homodeus
10 months ago
They phrase is "...to control traffic going into and coming out of an Amazon VPC subnet?". It is NACL. D
upvoted 1 times
...
MarysSon
10 months, 1 week ago
Selected Answer: C
C is the correct answer. The AWS Firewall Manager helps to configure a firewall and that’s what this question is asking. ”AWS Firewall Manager simplifies your AWS WAF administration and maintenance tasks across multiple accounts and resources. With AWS Firewall Manager, you set up your firewall rules just once.” A – Security groups are essential to efficiently managing access to resources, but they are not classified as a service. B – Web application firewall is essential to controlling traffic into and out of a network, by setting access rules and monitoring network request, but this is not the best answer. D – Access Control Lists are used to grant or limit access to network and system resources, but they are not classified as a service. Reference: https://AWS Firewall Manager Documentation (amazon.com)
upvoted 3 times
...
bd29
10 months, 3 weeks ago
Selected Answer: A
A. Security Group is the primary method.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago