Multiple Choice
An application is running on Amazon EC2 instances. Sensitive information required for the application is stored in an Amazon S3 bucket. The bucket needs to be protected from internet access while only allowing services within the VPC access to the bucket. Which combination of actions should solutions archived take to accomplish this? (Choose two.)
A) Create a VPC endpoint for Amazon S3.
B) Enable server access logging on the bucket.
C) Apply a bucket policy to restrict access to the S3 endpoint.
D) Add an S3 ACL to the bucket that has sensitive information.
E) Restrict users using the IAM policy to use the specific bucket.
Correct Answer:

Verified
Correct Answer:
Verified
Q363: A solutions architect needs to design a
Q364: A development team is deploying a new
Q365: A company has enabled AWS CloudTrail logs
Q366: A company is running an application on
Q367: A company is selling up an application
Q369: A company's web application uses an Amazon
Q370: A company's website is using an Amazon
Q371: A company is launching an ecommerce website
Q372: A solutions architect is tasked with transferring
Q373: A company mandates that an Amazon S3