AWS Certified Solutions Architect Associate SAA-C03 Practice Question

Your client has a cloud-based application that must be securely accessible by both internal staff and external clients. Internal staff should only access the application via the company's network, while external clients should be granted direct access through the public internet. Which service or feature should the architect leverage to enforce this selective access policy for the application?

  • Deploy a web application firewall to define access rules contingent on the source IP addresses.

  • Set up a dedicated networking linkage for exclusive database connectivity, restricting all other forms of access.

  • Implement a global DNS service to discriminate traffic and control application access.

  • Activate a premium security service typically used for safeguarding against distributed denial-of-service attacks.

AWS Certified Solutions Architect Associate SAA-C03
Design Secure Architectures
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot