A SysOps administrator recently launched an application consisting of web servers running on Amazon EC2 instances, an Amazon ElastiCache cluster communicating on port 6379, and an Amazon RDS for PostgreSQL DB instance communicating on port 5432. The web servers are in the security group web-sg, the ElastiCache cluster is in the security group cache-sg, and the DB instance is in the security group database-sg. The application fails on start, with the error message "Unable to connect to the database". The rules in web-sg are as follows. Which change should the SysOps administrator make to web-sg to correct the issue without compromising security?
A) Add a new inbound rule: database-sg TCP 5432
B) Add a new outbound rule:
C) 0.0.0.0/0 All Traffic 0-65535
D) Change the outbound rule to: cache-sg TCP 5432
Correct Answer:
Verified
Q800: A company is releasing a new static
Q801: A company has multiple AWS accounts. The
Q802: The Security team at AnyCompany discovers that
Q803: Developers are using IAM access keys to
Q804: A company's application infrastructure was deployed using
Q806: A company is migrating its exchange server
Q807: An ecommerce company uses an Amazon ElastiCache
Q808: A SysOps Administrator needs to monitor all
Q809: A company's data processing workflow uses AWS
Q810: A SysOps administrator manages an AWS CloudFormation
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents