- Home
- All questions
- Question 27
AWS Certified Solutions Architect study material · question 27 of 500
Which two statements correctly describe network ACLs in a VPC? Choose two.
Show the answer
Answer: B. Every subnet is associated with a network ACL, defaulting to the VPC's default one
C. A network ACL rule carries a number and either allows or denies traffic
A subnet always has exactly one network ACL, and each numbered rule allows or denies. Attaching a new ACL replaces the previous association.
Source: Control subnet traffic with network access control lists (Amazon Web Services) — Network ACL associations