A security audit revealed that the security groups in a VPC have ports 22 and 3389 open to all, introducing a possible threat that instances can be stopped or configurations can be modified. A sysops administrator needs to automate remediation. What should the sysops administrator do to meet these requirements?
A) Create an IAM managed policy to deny access to ports 22 and 3389 on any security groups in a VPC.
B) Define an AWS Config rule and remediation action with AWS Systems Manager automation documents.
C) Enable AWS Trusted Advisor to remediate public port access.
D) Use AWS Systems Manager configuration compliance to remediate public port access.
Correct Answer:
Verified
Q705: A SysOps administrator is evaluating Amazon Route
Q706: A company wants to reduce costs on
Q707: A popular auctioning platform requires near-real-time access
Q708: A company has several accounts between different
Q709: A SysOps administrator is investigating why a
Q711: A SysOps Administrator must remove public IP
Q712: A sysops administrator is managing an application
Q713: A medical imaging company needs to process
Q714: When performing an audit on an S3
Q715: A company has a web application that
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents