Home › Forums › AWS › AWS Certified Security – Specialty › Issue with practice test question
-
Issue with practice test question
Irene-TutorialsDojo updated 2 weeks, 5 days ago
2 Members
·
2
Posts
-
-
Hello mobious,
Thank you for your feedback regarding the use of AWS KMS to encrypt files. While AWS Key Management Service (KMS) is indeed a powerful tool for managing encryption keys, it is important to note that KMS is primarily designed for encrypting data at rest. It helps secure data stored in services like Amazon S3, Amazon EBS, and databases by managing the encryption keys. However, KMS does not directly encrypt data in transit over the public internet.
For securing data in transit, especially over the public internet, AWS recommends using AWS Certificate Manager (ACM) to manage and deploy SSL/TLS certificates. These certificates are designed to encrypt communications between clients and services, ensuring that sensitive data is protected during transmission. You can easily provision and manage these certificates with ACM and deploy them on services like Application Load Balancer (ALB) to establish secure HTTPS connections.
We hope this clears up any confusion, and we appreciate your continued engagement with AWS services. Should you need further clarification, please don’t hesitate to reach out!
Best,
Irene @ Tutorials Dojo
Log in to reply.