You operate a production VPC with both a public and a private subnet. Your organization maintains a restricted Amazon S3 bucket to support this production workload. Only Amazon EC2 instances in the private subnet should access the bucket. You implement VPC endpoints (VPC-E) for Amazon S3 and remove the NAT that previously provided a network path to Amazon S3. The default VPC-E policy is applied. Neither EC2 instances in the public or private subnets are able to access the S3 bucket. What should you do to enable Amazon S3 access from EC2 instances in the private subnet?
A) Add the CIDR address range of the private subnet to the S3 bucket policy.
B) Add the VPC-E identifier to the S3 bucket policy.
C) Add the VPC identifier for the production VPC to the S3 bucket policy.
D) Add the VPC-E identifier for the production VPC to endpoint policy.
Correct Answer:
Verified
Q387: After setting an AWS Direct Connect, which
Q388: A company uses a newly provisioned 1-Gbps
Q389: Your company has just deployed IPv6 in
Q390: You have many IAM users with the
Q391: A company's network engineer needs to evaluate
Q392: Which of the following characters is not
Q393: A company needs to allow its remote
Q394: In the context of Amazon CloudFront, when
Q395: Select the VPC Peering statement below that
Q397: You can use the _ command of
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents