Soru

Zorluk: KolayNetwork and Infrastructure Security

An application developer is configuring security rules for an Amazon EC2 instance. They notice that when they allow inbound traffic on a specific port, the return outbound traffic is automatically allowed without requiring an explicit outbound rule. Which AWS network security component exhibits this stateful behavior?

  1. A
    Network Access Control Lists (Network ACLs)
  2. Security GroupsCevap
  3. C
    Amazon GuardDuty
  4. D
    AWS Shield

Cevap

Security Groups
Security Groups are stateful firewalls operating at the instance level. Any permitted inbound connection automatically allows the corresponding outbound return traffic, regardless of the outbound rules.

Adım Adım Çözüm

1
Analyze the network traffic behavior described in the scenario.
The firewall automatically permits outbound responses to approved inbound requests, showing stateful tracking.
Understanding whether a firewall is stateful or stateless is key to identifying how it manages return traffic.
2
Select the AWS security feature that matches this stateful behavior at the instance level.
Security Groups are the stateful firewalls that operate at the instance level.
This matches the behavior in the scenario, distinguishing it from Network ACLs, which are stateless.

Anahtar Kavram

Stateful and stateless network filtering in AWS (Security Groups vs. Network ACLs)
Tahmini Süre:45s
Bu soruyu puanla