A financial company hosts a web application on AWS. The application uses an Amazon API Gateway Regional API endpoint to give users the ability to retrieve current stock prices. The company's security team has noticed an increase in the number of API requests. The security team is concerned that HTTP flood attacks might take the application offline. A solutions architect must design a solution to protect the application from this type of attack. Which solution meets these requirements with the LEAST operational overhead?
A) Create an Amazon CloudFront distribution in front of the API Gateway Regional API endpoint with a maximum TTL of 24 hours.
B) Create a Regional AWS WAF web ACL with a rate-based rule. Associate the web ACL with the API Gateway stage.
C) Use Amazon CloudWatch metrics to monitor the Count metric and alert the security team when the predefined rate is reached.
D) Create an Amazon CloudFront distribution with Lambda@Edge in front of the API Gateway Regional API endpoint. Create an AWS Lambda function to block requests from IP addresses that exceed the predefined rate.
Correct Answer:
Verified
Q508: A company is building an online multiplayer
Q509: A company runs its infrastructure on AWS
Q510: A company runs its two-tier ecommerce website
Q511: A company uses AWS Organizations to manage
Q512: A company is migrating from an on-premises
Q514: A company designed a stateless two-tier application
Q515: A gaming company hosts a browser-based application
Q516: A company's managing health records on-premises. The
Q517: A company wants to migrate a high
Q518: A company is building an application that
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents