exam questions

Exam ANS-C00 All Questions

View all questions & answers for the ANS-C00 exam

Exam ANS-C00 topic 1 question 89 discussion

Exam question from Amazon's ANS-C00
Question #: 89
Topic #: 1
[All ANS-C00 Questions]

A network architect is designing a website. It has web, application, and database tiers that will run in AWS. The website uses Amazon DynamoDB.
Which architecture will minimize public exposure of the backend instances?

  • A. A VPC with public subnets for the NLB, public subnets for the web tier, private subnets for the application tier, and private subnets for DynamoDB.
  • B. A VPC with public subnets for the ALB, private subnets for the web tier, and private subnets for the application tier. The application tier connects DynamoDB through a VPC endpoint.
  • C. A VPC with public subnets for the ALB, public subnets for the web tier, private subnets for the application tier, and private subnets for DynamoDB.
  • D. A VPC with public subnets for the NLB, private subnets for the web tier, and public subnets for the application tier. The application tier connects DynamoDB through a VPC endpoint.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
dirk_gentley
Highly Voted 3 years, 6 months ago
B - https://docs.aws.amazon.com/amazondynamodb/latest/developerguide/vpc-endpoints-dynamodb.html A VPC endpoint for DynamoDB enables Amazon EC2 instances in your VPC to use their private IP addresses to access DynamoDB with no exposure to the public internet. Your EC2 instances do not require public IP addresses, and you don't need an internet gateway, a NAT device, or a virtual private gateway in your VPC.
upvoted 19 times
...
LexyA
Highly Voted 3 years, 6 months ago
B is correct. Minimal exposure.
upvoted 6 times
...
madperro
Most Recent 2 years, 11 months ago
Selected Answer: C
C is correct because public Internet-facing ALB requires targets in public subnets. Thus at least web servers must be in public subnets.
upvoted 1 times
squeeze_talus0y
2 years, 7 months ago
Wrong. You can have internet-facing ALB (public subnets) and the Targets in private subnets. Try it. Practical exercise. It works.
upvoted 1 times
...
...
cdeavila
2 years, 11 months ago
Selected Answer: B
for me is B,
upvoted 1 times
...
MohamedSherif1
2 years, 11 months ago
B. A VPC with public subnets for the ALB, private subnets for the web tier, and private subnets for the application tier. The application tier connects DynamoDB through a VPC endpoint.
upvoted 1 times
...
Kimi37LP
3 years, 1 month ago
CD is right
upvoted 1 times
...
jeerysrthsvssd
3 years, 1 month ago
Selected Answer: B
It’s a web app… you can do API-ish things like path based routing and work at the level 7 layer
upvoted 1 times
...
kpr2022
3 years, 1 month ago
Selected Answer: B
ALB satisfies the requirement and is less expensive than NLB.
upvoted 1 times
...
AzureDP900
3 years, 2 months ago
B is correct.
upvoted 1 times
...
FarrowsBight
3 years, 3 months ago
Selected Answer: B
Incredibly straightforward. Associate level knowledge.
upvoted 2 times
...
yefeho1744
3 years, 3 months ago
Selected Answer: B
B should be correct answer
upvoted 1 times
...
BKV83
3 years, 4 months ago
Selected Answer: B
Answer should be B not D
upvoted 1 times
...
ceros399
3 years, 4 months ago
Selected Answer: B
B is the correct answer
upvoted 1 times
...
ParthD
3 years, 4 months ago
Selected Answer: B
Correct answer is B
upvoted 1 times
...
RaghuRajm
3 years, 5 months ago
B is correct. Since it is a web application, we can go with ALB and position it in a public subnet. The web and application tier can reside on private subnets. DynamoDB is a public AWS service and hence cannot be placed inside a VPC subnet. A VPC endpoint for DynamoDB can be created and associated with the route table of the VPC so as to securely communicate with DynamoDB using private IP address.
upvoted 5 times
...
Justu
3 years, 6 months ago
Web application -> A & D incorrect.
upvoted 2 times
...
kvirk
3 years, 6 months ago
Ans is B
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago