Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam AWS Certified Solutions Architect - Professional SAP-C02 All Questions

View all questions & answers for the AWS Certified Solutions Architect - Professional SAP-C02 exam

Exam AWS Certified Solutions Architect - Professional SAP-C02 topic 1 question 398 discussion

A company is building an application on AWS. The application sends logs to an Amazon OpenSearch Service cluster for analysis. All data must be stored within a VPC.

Some of the company’s developers work from home. Other developers work from three different company office locations. The developers need to access OpenSearch Service to analyze and visualize logs directly from their local development machines.

Which solution will meet these requirements?

  • A. Configure and set up an AWS Client VPN endpoint. Associate the Client VPN endpoint with a subnet in the VPC. Configure a Client VPN self-service portal. Instruct the developers to connect by using the client for Client VPN.
  • B. Create a transit gateway, and connect it to the VPC. Create an AWS Site-to-Site VPN. Create an attachment to the transit gateway. Instruct the developers to connect by using an OpenVPN client.
  • C. Create a transit gateway, and connect it to the VPOrder an AWS Direct Connect connection. Set up a public VIF on the Direct Connect connection. Associate the public VIF with the transit gateway. Instruct the developers to connect to the Direct Connect connection.
  • D. Create and configure a bastion host in a public subnet of the VPC. Configure the bastion host security group to allow SSH access from the company CIDR ranges. Instruct the developers to connect by using SSH.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
vibzr2023
Highly Voted 10 months, 3 weeks ago
A correct: Best choice to use Client VPN B. Site-to-Site VPN: Designed for connecting entire networks, not individual devices, and requires VPN hardware/software at each office location. C. Direct Connect: Primarily for high-bandwidth, low-latency connections between on-premises networks and AWS, not individual developer access. D. Bastion Host: While providing access, it introduces a potential security risk by exposing a public-facing host and requires developers to learn SSH.
upvoted 5 times
...
AzureDP900
Most Recent 1 week, 2 days ago
A is right, client VPN is best option.
upvoted 1 times
...
career360guru
10 months, 2 weeks ago
Selected Answer: A
Option A
upvoted 3 times
...
FuriouZ
11 months, 2 weeks ago
Selected Answer: A
A because work from home
upvoted 3 times
...
dutchy1988
12 months ago
Site-to-Site and Direct Connect eliminates the developers from home to acces VPC -> B and C out D states compagny CIDR range, so also developers at home are excluded -> D out A is only valid option. Each developer needs to access environment using point to site construction.
upvoted 3 times
...
shaaam80
12 months ago
Answer A - Client VPN endpoint
upvoted 1 times
...
Maygam
1 year ago
Selected Answer: A
1. https://docs.aws.amazon.com/vpn/latest/clientvpn-admin/cvpn-working-endpoints.html 2. https://docs.aws.amazon.com/vpn/latest/clientvpn-user/self-service-portal.html
upvoted 3 times
...
thala
1 year ago
Selected Answer: A
https://www.examtopics.com/discussions/amazon/view/69499-exam-aws-certified-solutions-architect-professional-topic-1/
upvoted 1 times
...
cypkir
1 year ago
Selected Answer: A
Answer: A
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...