exam questions

Exam AWS-SysOps All Questions

View all questions & answers for the AWS-SysOps exam

Exam AWS-SysOps topic 1 question 439 discussion

Exam question from Amazon's AWS-SysOps
Question #: 439
Topic #: 1
[All AWS-SysOps Questions]

A custom network ACL that you create ____ until you add rules, and is not associated with a sub-net until you explicitly associate it with one.

  • A. blocks only inbound traffic by default
  • B. allows outbound traffic by default
  • C. allows all inbound and outbound traffic by default
  • D. blocks all inbound and outbound traffic by default
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
albert_kuo
10 months, 1 week ago
Selected Answer: D
Network ACLs provide an additional layer of security for your VPC (Virtual Private Cloud) by allowing you to control traffic flow at the subnet level. By default, all inbound and outbound traffic is blocked until you define rules to permit specific traffic based on the desired requirements of your network architecture.
upvoted 1 times
...
Finger41
1 year, 10 months ago
Selected Answer: D
D - https://docs.aws.amazon.com/vpc/latest/userguide/vpc-network-acls.html#custom-network-acl Trick question, default VPC the NACL is permissive, but because it specifies " that you construct", the below applies - You can create a custom network ACL and associate it with a subnet. By default, each custom network ACL denies all inbound and outbound traffic until you add rules.
upvoted 2 times
...
rodolfo2020
2 years, 5 months ago
Correct Answer: C https://docs.aws.amazon.com/es_es/vpc/latest/userguide/vpc-network-acls.html
upvoted 2 times
luuthang2011
2 years, 1 month ago
D. "that you construct" is difference with default acl in vpc
upvoted 1 times
...
...
TroyMcLure
2 years, 5 months ago
Correct Answer: D
upvoted 1 times
...
Anderson01
2 years, 5 months ago
"by default" - So, D is correct
upvoted 2 times
...
Golddust
2 years, 5 months ago
The keyword here is custom. D is correct
upvoted 4 times
...
sen12
2 years, 6 months ago
By default, it allows all inbound and outbound IPv4 traffic and, if applicable, IPv6 traffic. By default, each custom network ACL denies all inbound and outbound traffic until you add rules. So Answer is D
upvoted 4 times
...
nebies
2 years, 7 months ago
The answer is D. Check out https://docs.aws.amazon.com/vpc/latest/userguide/vpc-network-acls.html#nacl-basics. Quote "By default, each custom network ACL denies all inbound and outbound traffic until you add rules.".
upvoted 4 times
...
YashBindlish
2 years, 7 months ago
Correct Answer is C ..Your VPC automatically comes with a modifiable default network ACL. By default, it allows all inbound and outbound IPv4 traffic
upvoted 1 times
karmaah
2 years, 6 months ago
No. It is stateless. ans D.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago