
Ultimate access to all questions.
A software development company with remote engineers is operating Active Directory Domain Services (AD DS) on an Amazon EC2 instance. The company's security policy mandates that all internal, nonpublic services within a VPC must be accessible via VPN, with Multi-factor Authentication (MFA) enforced for VPN access. What solution should a solutions architect implement to fulfill these requirements?
A
Establish an AWS Site-to-Site VPN connection, integrate it with AD DS, and utilize an Amazon WorkSpaces client with enabled MFA support to initiate the VPN connection.
B
Set up an AWS Client VPN endpoint, create an AD Connector directory for AD DS integration, activate MFA for the AD Connector, and employ AWS Client VPN to initiate the VPN connection.
C
Deploy multiple AWS Site-to-Site VPN connections using AWS VPN CloudHub, integrate AWS VPN CloudHub with AD DS, and use AWS Copilot to initiate the VPN connection.
D
Create an Amazon WorkLink endpoint, integrate it with AD DS, enable MFA within Amazon WorkLink, and use AWS Client VPN to initiate the VPN connection.