exam questions

Exam AWS-SysOps All Questions

View all questions & answers for the AWS-SysOps exam

Exam AWS-SysOps topic 1 question 151 discussion

Exam question from Amazon's AWS-SysOps
Question #: 151
Topic #: 1
[All AWS-SysOps Questions]

A user has created a VPC with CIDR 20.0.0.0/16. The user has created public and VPN only subnets along with hardware VPN access to connect to the user's datacenter. The user wants to make so that all traffic coming to the public subnet follows the organization's proxy policy. How can the user make this happen?

  • A. Setting up a NAT with the proxy protocol and configure that the public subnet receives traffic from NAT
  • B. Setting up a proxy policy in the internet gateway connected with the public subnet
  • C. It is not possible to setup the proxy policy for a public subnet
  • D. Setting the route table and security group of the public subnet which receives traffic from a virtual private gateway
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️
The user can create subnets within a VPC. If the user wants to connect to VPC from his own data center, he can setup public and VPN only subnets which uses hardware VPN access to connect with his data center. When the user has configured this setup, it will update the main route table used with the VPN-only subnet, create a custom route table and associate it with the public subnet. It also creates an internet gateway for the public subnet. By default, the internet traffic of the
VPN subnet is routed to a virtual private gateway while the internet traffic of the public subnet is routed through the internet gateway. The user can set up the route and security group rules. These rules enable the traffic to come from the organization's network over the virtual private gateway to the public subnet to allow proxy settings on that public subnet.

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Danmay001
6 months, 2 weeks ago
a is the currecty
upvoted 2 times
...
DragonPender
6 months, 2 weeks ago
Setting the route table and security group of the public subnet which receives traffic from a virtual private gateway.
upvoted 1 times
...
dennismp
6 months, 2 weeks ago
A is the ans, you cannot set security group of the public subnet, security group attachs to ec2 or services inside VPC
upvoted 3 times
...
awscertified
7 months ago
D. Setting the route table and security group of the public subnet which receives traffic from a virtual private
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago