An organization want to use the Amazon EMR service to handle sensitive data. On-premises databases are used to store the data. Before being uploaded to a customer-owned Amazon S3 bucket, the processing output will be encrypted using AWS KMS. The present architecture contains a virtual private server (VPS) with public and private subnets connected through VPN to the on-premises network. Amazon EC2 instances are not permitted to operate on the public subnet by the security organization.
What is the SIMPLEST and SECUREST architecture that will accomplish the organization's objective?
A. Use the existing VPC and configure Amazon EMR in a private subnet with an Amazon S3 endpoint. Most Voted
B. Use the existing VPS and a NAT gateway, and configure Amazon EMR in a private subnet with an Amazon S3 endpoint.
C. Create a new VPS without an IGW and configure the VPN and Amazon EMR in a private subnet with an Amazon S3 endpoint. Most Voted
D. Create a new VPS without an IGW and configure the VPN and Amazon EMR in a private subnet with an Amazon S3 endpoint and a NAT gateway.
An organization want to use the Amazon EMR service to handle sensitive data. On-premises databases are used to store the
-
answerhappygod
- Site Admin
- Posts: 899604
- Joined: Mon Aug 02, 2021 8:13 am
An organization want to use the Amazon EMR service to handle sensitive data. On-premises databases are used to store the
Join a community of subject matter experts. Register for FREE to view solutions, replies, and use search function. Request answer by replying!