AWS Certified Solutions Architect – Professional (SAP-C02) — Question 311

A company’s solutions architect needs to provide secure Remote Desktop connectivity to users for Amazon EC2 Windows instances that are hosted in a VPC. The solution must integrate centralized user management with the company's on-premises Active Directory. Connectivity to the VPC is through the internet. The company has hardware that can be used to establish an AWS Site-to-Site VPN connection.

Which solution will meet these requirements MOST cost-effectively?

Answer options

Correct answer: B

Explanation

Option B is the most cost-effective solution because AWS Systems Manager Fleet Manager provides secure, browser-based RDP access without requiring the deployment and maintenance of dedicated bastion hosts or RD Gateways. Additionally, using an AD Connector to integrate with the existing on-premises Active Directory is significantly less expensive than deploying AWS Directory Service for Microsoft Active Directory. Other options introduce higher costs due to managed AD directory fees, VPN connection charges, or ongoing EC2 instance costs for gateways.