SAA-C03 - Design Secure Architectures - Section 1.8

Protect data in transit using TLS, AWS Certificate Manager and secure connectivity options.

Describe how TLS secures data in transit and how AWS Certificate Manager provisions, manages, and auto-renews public and private certificates for use with HTTPS listeners on load balancers and CloudFront distributions. Recognise when a VPN connection or AWS Direct Connect with MACsec is required to encrypt traffic between on-premises networks and AWS.

TLSAWS Certificate ManagerHTTPS listenersVPN encryption

More in this domain

Back to all Design Secure Architectures objectives, or the SAA-C03 cert hub.

Examworthy is not affiliated with or endorsed by Amazon Web Services. Original, blueprint-aligned practice material only.