Which solution should a solutions architect recommend to enhance the origin security?

2 Comments

  1. Arthur
    Author

    I structure that the answer is:
    Store a random string in AWS Secrets Manager. Create an AWS Lambda function for automatic secret rotation. Configure CloudFront to inject the random string as a custom HTTP header for the origin request. Create an AWS WAF web ACL rule with a string match rule for the custom header. Associate the web ACL with the ALB.

  2. Andrea
    Author

    In my opinion, the answer is:
    Store a random string in AWS Secrets Manager. Create an AWS Lambda function for automatic secret rotation. Configure CloudFront to inject the random string as a custom HTTP header for the origin request. Create an AWS WAF web ACL rule with a string match rule for the custom header. Associate the web ACL with the ALB.

Leave a Reply to Andrea Cancel reply

Your email address will not be published. Required fields are marked *

15 − 11 =