AWS SAP-C02 · Question 52 · Domain 3.2: Security Improvement
A company wants to enforce strict data perimeter controls. They want to ensure that IAM principals in their AWS Organization can only access AWS resources from within their corporate network or their VPCs. Which TWO mechanisms should be used together to achieve this? (Select TWO)
Answer options:
AWS WAF IP rate limiting rules.
VPC Security Groups.
Service Control Policies (SCPs).
AWS Network Firewall.
IAM condition keys (aws:SourceIp and aws:SourceVpc).
AWS Shield Advanced.
75 questions · hints · full answers · grading