exam questions

Exam AWS Certified Advanced Networking - Specialty ANS-C01 All Questions

View all questions & answers for the AWS Certified Advanced Networking - Specialty ANS-C01 exam

Exam AWS Certified Advanced Networking - Specialty ANS-C01 topic 1 question 222 discussion

A retail company is migrating its on-premises application to the AWS Cloud. Currently, the company has two on-premises data center locations. One data center is on the east coast of the United States, and one data center is on the west coast.

Each data center hosts four database systems. The largest database system stores 500 GB of data. The data centers are interconnected by two 10 GbE circuits for data synchronization. Each data center has two separate 1 GbE upstream internet connections. The company plans to have eight total VPCs to service its multiple business units. Four VPCs will be in the us-east-1 Region, and four will be in the us-west-2 Region.

A network engineer needs to design a connectivity solution that allows VPC-to-VPC connectivity. The solution must also allow secure connections between the on-premises data centers and AWS during the migration process. The company expects spikes in traffic among the VPCs during database synchronization. The company wants to run the migration plan during one weekend and as soon as technically possible. The company also wants to minimize long-term operational and human resources costs.

Which combination of steps will meet these requirements? (Choose two.)

  • A. Deploy one transit gateway and attach all VPCs to it. Update the transit gateway and VPC route tables to allow any VPC to connect to any other VPC.
  • B. Configure VPC peering between all the VPCs. Update the VPC route tables to allow connectivity.
  • C. Provision two AWS Direct Connect connections from two Direct Connect locations that serve us-east-1 and us-west-2 to provide connectivity between the data centers and AWS.
  • D. Provision one transit gateway VPN attachment for each data center to build connectivity between the on-premises data centers and AWS VPCs.
  • E. Provision one AWS Site-to-Site VPN connection for each data center and for each VPC to build connectivity between the on-premises data centers and AWS VPCs.
Show Suggested Answer Hide Answer
Suggested Answer: CD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
8be7437
1 week ago
Selected Answer: DE
This is broken. It cannot be A because we have 2 regions, and you would need 2 TGW. B is broken because peering of 8 VPC would not "minimize long-term operational and human..." 28 peerings! C is broken because they want to do this "as soon as technically possible" and a direct connect takes 3 months! D may be broken, even if it looks ok, but it doesn't mention association to VPC, and you need the TGW (see A!). E Also is broken because something is missing in the wording and if "for each VPC, a VPN" that is not sustainable either. Since we have to choose two, this question does VERY little sense. So the ones I feel approximate is D and E, because I bet the missing part on E I presume may be correcting this mess.
upvoted 1 times
...
Selected Answer: CD
C & D are correct human resources costs. Not cost
upvoted 1 times
...
ashk123456
4 weeks ago
Selected Answer: AC
AC are corrected
upvoted 1 times
...
secdaddy
2 months, 4 weeks ago
Selected Answer: BE
Voted solution CD doesn't work as does not provide VPC-VPC connectivity. A is hard out as VPC-TGW cross regional peering is impossible. Without A we can also eliminate D as A was the only one provisioning TGW. C and E both say between DCs and AWS so we are left with B for VPC-VPC (also keeping long term costs down) and either C or E for DC-AWS. C is generally better but slower to put in place whereas E gives us both faster deployment and secure connections for the migration. E should provide enough bandwidth to accomplish the migration during a weekend. If we assume the DCs go away post migration DX is even less interesting.
upvoted 4 times
49ca6f2
2 months, 2 weeks ago
This looks like only possible explanation. A is definitely wrong option. TGW won't allow the cross region vpc attachment. And DX is slow , not cost effective. VPN is faster to deploy and plus it is cost effective. Correct option is BE.
upvoted 2 times
...
...
jfedotov
3 months, 1 week ago
Selected Answer: CD
CD are correct
upvoted 1 times
...
AzureDP900
3 months, 3 weeks ago
Selected Answer: CD
The combination of C and D meets the requirements: VPC-to-VPC connectivity: The Direct Connect connections provide direct access to the VPCs, allowing them to communicate with each other. Secure connections between on-premises data centers and AWS: The transit gateway VPN attachments ensure secure connections between the data centers and AWS, enabling database synchronization. The other options do not meet all the requirements: A provides VPC-to-VPC connectivity but does not provide direct connections to the on-premises data centers. B provides VPC-to-VPC connectivity but may not be the most efficient or cost-effective solution for the company's needs. E is not necessary, as it would require multiple Site-to-Site VPN connections that would increase operational costs.
upvoted 1 times
18641c6
2 months ago
Well, VPC-to-VPC is definitely more cost-effective than TGW or direct connections. So I definitely choose B. One transit gateway is not sufficient, since TGWs are regional. So I prefer E over D
upvoted 1 times
...
...
mic8
4 months, 3 weeks ago
Selected Answer: CD
Since a single transit gateway cannot attach VPCs from different regions, option A is indeed incorrect.
upvoted 2 times
...
ArunRav
5 months, 1 week ago
Selected Answer: AC
A - to minimise the operational cost and handle traffic spike C - help the steady and low latency connection
upvoted 1 times
Nel07
5 months, 1 week ago
A is faulse. we can't attach VPC in different regions to the same TGW. TGW is a regional service
upvoted 3 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago