A company has two VPCs in the same AWS Region and in the same AWS account. Each VPC uses a CIDR block that does not overlap with the CIDR block of the other VPC. One VPC contains AWS Lambda functions that run inside a subnet that accesses the internet through a NAT gateway. The Lambda functions require access to a publicly accessible Amazon Aurora MySQL database that is running in the other VPC.
A security engineer determines that the Aurora database uses a security group rule that allows connections from the NAT gateway IP address that the Lambda functions use. The company’s security policy states that no database should be publicly accessible.
What is the MOST secure way that the security engineer can provide the Lambda functions with access to the Aurora database?
tainh
Highly Voted 2 years, 4 months agoToptip
Most Recent 1 year, 10 months ago6_8ftwin
1 year, 10 months agoITGURU51
1 year, 11 months agoGhouley
1 year, 12 months agoisokalau
2 years agoGreen53
1 year, 10 months agoSai123
2 years agoSai123
2 years agoNocky24
2 years, 3 months agosecdaddy
2 years, 3 months agosecdaddy
2 years, 3 months agosecdaddy
2 years, 3 months agosahanpere
2 years, 3 months agosecdaddy
2 years, 3 months agoD2
2 years, 4 months agoAdamWest
2 years, 5 months agoluisfsm_111
2 years, 5 months ago