
AWS Certified Advanced Networking – Specialty (ANS-C01) Certification Guide
By :

In the context of the exam, traffic protection is synonymous with encryption. This includes transporting encryption methods such as Transport Layer Security (TLS) and utilizing various AWS infrastructure components, such as load balancers and CloudFront. A couple of smaller topics related to transport encryption on the exam are AWS managed databases, Amazon S3, and customer-implemented solutions on Amazon EC2. Those will be touched on under enforcing encryption on intra-AWS traffic, just as they pertain to the exam.
Part of securing traffic is the infrastructure required to generate keys and digital certificates to facilitate the use of encryption. This infrastructure includes AWS Certificate Manager (ACM), AWS CloudHSM, and AWS Certificate Manager Private Certification Authority (ACM PCA). These topics will be covered next.
Whenever HTTPS or TLS encryption is being employed, you must supply a digital certificate to provide those...