AWS Certified Solutions Architect Associate SAA-C03 Practice Question
In a VPC, security groups can be configured with deny rules to block traffic from specific IP addresses.
True.
False.
In a VPC, security groups can be configured with deny rules to block traffic from specific IP addresses.
True.
False.
This statement is false. Security groups in AWS act as virtual firewalls for your instances to control inbound and outbound traffic. They support only allow rules with an implicit deny if no explicit statement is present for a given address or range; you cannot create deny rules in security groups. To block traffic from specific IP addresses, you would use Network Access Control Lists (ACLs) instead, which support both allow and deny rules and operate at the subnet level.
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
All IT & Cybersecurity Package plans include the following perks and exams .
Our pricing is simple. Full access to all certifications and exams in each package, for one price.
As many practice tests for as many topics as you want.
Use study mode non-stop, no limits.
Access to our AI assistant, Bash, trained to help you pass your exam.
Track your scores over time in study mode and report cards.
See how you improve over time, and where you need to focus.
Access our store with even bigger discounts than before.
Unlimited access to all performance questions and be prepared for the real thing.
All IT & Cybersecurity Package plans include unlimited access to the following study materials.
Create an account or sign in to access our study materials.