Security Flashcards
Do Security Group Changes take effect instantly?
yes/no
yes
Security Group - Inbound traffic is _____ by default
blocked
Security Group - outbound traffic is _____ by default
allowed
Which AWS Organisations feature allows creation of guardrails that apply to all accounts in the Org
Service Control Policies
AWS Service for generating and storing encryption keys
AWS KMS
AWS Service that provides dedicated hardware, stored on prem, for generating and storing encryption keys
Cloud HSM
AWS Service to manage and retrieve passwords and secrets
Secrets Manager
Service to protect against DDOS
AWS Shield
What service can you use to record API calls within your account
CloudTrail
Max number of Security Groups you can attach to an EC2
Max of 5 per network interface