Ultimate access to all questions.
A medical company operates a REST API on Amazon EC2 instances within an Auto Scaling group, which are situated behind an Application Load Balancer (ALB). The ALB is deployed in three public subnets, while the EC2 instances are located in three private subnets. Additionally, the company has established an Amazon CloudFront distribution with the ALB as its sole origin. What measures should a solutions architect propose to bolster the security of the origin?