AWS Shield Advanced with Route 53

0

Hi, when enabling AWS Shield Advanced I was unsure if I should enable only for Route 53 or is needed for other services as well. I ask because my infrastructure has CloudFront, Classic Load Balancers and some Elastic IPS which are all behind a Route 53 Hosted Zone. In this scenario enabling AWS Shield Advanced only for Route53 is enough or I need to enable for each of the resources that I have (CF, ELBs, etc)?

已提問 2 年前檢視次數 865 次
2 個答案
0

I think it'd be worth reaching out to your local AWS Solutions Architect and/or account team to discuss your requirements here.

However, to answer your question: Shield Advanced covers all of the services you mention. If you're going to enable it, you wouldn't just enable it for Route 53 (and that's not quite how it works in any case). it covers your entire workload.

profile pictureAWS
專家
已回答 2 年前
0

Just because the authoritative DNS for an AWS resource is on Route53, does not mean the resource is 'behind a Route 53 Hosted Zone'. That's not how DNS works.

You need to enable Shield Advanced Protection for each resource that you want enhanced detection, mitigation or cost protection for.

AWS
已回答 5 個月前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南