Shield Flashcards
1
Q
When would you use AWS Shield?
A
AWS Shield provides distributed denial of service (DDOS) protection. Specifically, it protects against:
Network Volumetric Attacks - Saturate capacity
Network Protocol Attacks - TCP SYN flood
Application Layer Attacks - web request floods; bad queries, etc.
2
Q
What are the two levels of AWS Shield?
A
Standard - Free; automatically provided with CloudFront and Route 53.
Advanced - Has a cost but covers many more products and provides realtime visibility. It must be explicitly enabled in Shield Advanced or AWS Firewall Manager. Protections are not automatic.