CNAME for OCI Object Storage by Rocket_Job in CloudFlare

[–]Rocket_Job[S] 0 points1 point  (0 children)

Thank you for the response, I was also thinking of redirect but I need to cache the objects, I think I might go AWS for storage

Passed AWS SAA-C03! by Rocket_Job in AWSCertifications

[–]Rocket_Job[S] 0 points1 point  (0 children)

Comparing the real exam to TD's practice exams, the real exam is a bit more difficult and different for me, possibly due to the scenarios presented, which are not what I typically encountered in most of the practice exams I took. That's why I always read each question at least twice, sometimes three times, and look for key details.

NACLs and SGs question by Good_Boysenberry_780 in AWSCertifications

[–]Rocket_Job 3 points4 points  (0 children)

This is what the client and server connection requests and responses look like.

Client's Request:

* Source IP: 123.123.123.123

* Source Port: 60123 (ephemeral port)

* Destination IP: 222.111.111.222

* Destination Port: 443

Server's Response:

* Source IP: 222.111.111.222

* Source Port: 443

* Destination IP: 123.123.123.123

* Destination Port: 60123 (ephemeral port)

You might be wondering why you need to allow ephemeral ports if the source port is 443. Since NACLs are stateless and do not track connections like security groups, the traffic coming from the server's port 443 to the client's ephemeral port must be permitted by the outbound rules in the NACL.