Q: 11
A company has a large fleet of Amazon Linux 2 Amazon EC2 instances that run an application
processing sensitive dat
a. Compliance requirements include no exposed management ports, full session logging, and
authentication through AWS IAM Identity Center. DevOps engineers occasionally need access for
troubleshooting.
Which solution will provide remote access while meeting these requirements?
Options
Discussion
Its C. Session Manager is designed for secure, compliant remote access without opening management ports. D is a trap since you should never open ports just for troubleshooting in sensitive environments. IAM Identity Center works smoothly with SSM roles too. Seen similar Qs in practice tests.
This AWS stuff gets so convoluted sometimes. B
Be respectful. No spam.