Ultimate access to all questions.
A company has migrated a legacy application to the AWS Cloud, deploying three Amazon EC2 instances across three Availability Zones, with one instance in each zone. These instances operate within three private subnets of a VPC and are configured as targets for an Application Load Balancer (ALB) associated with three public subnets. The application requires secure communication with on-premises systems, allowing only traffic from the company's specified IP address range. The security team has designated a single internal IP address for cloud use, which has been whitelisted in the company's firewall and assigned an Elastic IP address. The solutions architect must devise a strategy that enables the application to communicate with on-premises systems while ensuring automatic failure mitigation. Which solution meets these criteria?