exam questions

Exam AWS-SysOps All Questions

View all questions & answers for the AWS-SysOps exam

Exam AWS-SysOps topic 1 question 430 discussion

Exam question from Amazon's AWS-SysOps
Question #: 430
Topic #: 1
[All AWS-SysOps Questions]

Security groups in VPC operate at the ______.

  • A. data transport layer level
  • B. subnet level
  • C. instance level
  • D. gateway level
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️
You can secure your VPC instances using only security groups. When you launch an instance in a VPC, you can associate one or more security groups that you've created. The security groups act as a firewall for associated Amazon EC2 instances, controlling both inbound and outbound traffic at the instance level.
Reference:
http://docs.aws.amazon.com/AmazonVPC/latest/UserGuide/VPC_Security.html

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
albert_kuo
10 months, 1 week ago
Selected Answer: C
When creating or configuring a security group, you specify the inbound and outbound rules that control the traffic flow to and from the instances. These rules can be based on protocols, ports, IP ranges, and other parameters. Security groups provide a granular level of control over network traffic at the instance level, allowing you to define specific access policies for each instance within your VPC. In contrast, network ACLs (Access Control Lists) operate at the subnet level in VPC. Network ACLs are stateless and operate at the subnet level, controlling inbound and outbound traffic by evaluating rules based on source and destination IP addresses, ports, and protocols.
upvoted 1 times
...
Flaviu6373
2 years, 2 months ago
correct C
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago