A. You configured the rule number to be too low.
B. A NACL can’t protect against a DDoS.
C. The DDoS isn’t a TCP attack.
D. You need to add a deny rule outbound also since NACLs are stateful.

- Awsexamhub website is not related to, affiliated with, endorsed or authorized by Amazon.
- Trademarks, certification & product names are used for reference only and belong to Amazon.