A company has deployed its corporate website in a VPC on two Amazon EC2 instances behind an Application Load Balancer (ALB). The EC2 instances are deployed in private subnets. The ALB is in a public subnet. A route to an internet gateway exists in the public subnet route table. The company has deployed an Amazon CloudFront distribution with the ALB as the origin.
The company's security team recently identified that malicious traffic is accessing the ALB directly. The company must deploy security controls to prevent common attack techniques, including cross-site scripting, and to protect against volumetric denials of service.
Which strategy should a solutions architect recommend to meet these requirements?
FlyingHawk
3 months, 1 week agovn_thanhtung
1 year, 8 months agovn_thanhtung
1 year, 8 months agodev112233xx
1 year, 12 months agovietbui
2 years agoandras
2 years, 1 month agodavidy2020
2 years, 2 months agocoolt2
2 years, 2 months agocoolt2
2 years, 2 months agozozza2023
2 years, 2 months agoccort
2 years, 3 months agoKende
2 years, 4 months agoSpavanko
2 years, 4 months agomasetromain
2 years, 4 months ago