A company has deployed its corporate website in a VPC on two Amazon EC2 instances behind an Application Load Balancer (ALB). The EC2 instances are deployed in private subnets. The ALB is in a public subnet. A route to an internet gateway exists in the public subnet route table. The company has deployed an Amazon CloudFront distribution with the ALB as the origin.
The company's security team recently identified that malicious traffic is accessing the ALB directly. The company must deploy security controls to prevent common attack techniques, including cross-site scripting, and to protect against volumetric denials of service.
Which strategy should a solutions architect recommend to meet these requirements?
FlyingHawk
2 weeks, 5 days agovn_thanhtung
1 year, 5 months agovn_thanhtung
1 year, 5 months agodev112233xx
1 year, 9 months agovietbui
1 year, 9 months agoandras
1 year, 11 months agodavidy2020
1 year, 11 months agocoolt2
1 year, 12 months agocoolt2
1 year, 12 months agozozza2023
2 years agoccort
2 years agoKende
2 years, 1 month agoSpavanko
2 years, 2 months agomasetromain
2 years, 2 months ago