Security Groups and NACLs Quiz
Quiz covering VPC Security
Security Groups and NACLs Quiz
5 questions | Pass: 70% | Earn 25 points
Questions in this quiz
A preview of the 5 questions covered. Start the quiz above to answer them, check your score, and read the explanations.
- 1
Which of the following best describes the fundamental difference between Security Groups and Network ACLs (NACLs)?
- 2
You have a web server in a public subnet that needs to accept incoming traffic on port 80. What is the minimum configuration required on the associated Security Group?
- 3
A Network ACL is configured to deny all traffic from a specific IP address (192.168.1.50) on port 22. If the associated Security Group allows all traffic from 0.0.0.0/0 on port 22, what happens when 192.168.1.50 attempts to SSH into the instance?
- 4
You are troubleshooting why an instance in a private subnet cannot download updates from an external repository via HTTP. You have confirmed the Security Group allows outbound traffic. What is the most likely cause related to NACLs?
- 5
An administrator wants to block a specific malicious IP address from accessing any resources in a VPC. Which mechanism is most efficient for this, and why?
- Amazon GuardDuty Configuration
- Amazon GuardDuty Configuration Quiz5q
- GuardDuty Runtime Monitoring
- GuardDuty Runtime Monitoring Quiz5q
- Security Hub Aggregation
- Security Hub Aggregation Quiz5q
- AWS Security Finding Format (ASFF)
- AWS Security Finding Format (ASFF) Quiz5q
- Amazon Inspector Scanning
- Amazon Inspector Scanning Quiz5q
Enjoying the courses?
Everything stays free. Pro shows fewer ads, doubles the points you earn on every lesson and quiz so you progress twice as fast, unlocks half of every practice exam — plus full case studies — with the Learn & Exam study modes, and lets you read each lesson on one page.
- ✓ Fewer advertisements
- ✓ 2× points per lesson & quiz
- ✓ 50% of every exam unlocked
- ✓ Learn & Exam modes
- ✓ Distraction-free lessons