Review Questions – Connecting On-Premises Networks – ANS-C01 Study Guide
Review Questions
As a network cloud engineer for your company, you are exploring options available to create a hybrid network from your Glasgow data center to the eu-west-1 region in Dublin, Ireland. What are viable connection options?
DX
Kinesis data stream
Regional interconnect
Site-to-site VPN
VPC peering
What framework outlines responsibilities for security implementations in the AWS cloud?
AWS Macie
AWS Well-Architected Framework
IPSec
Shared responsibility model
AWS security framework service
What data center technology centralizes control plane operations into a central controller?
Routing
CloudHub
API Gateway
SDN
Control Tower
Which AWS networking service bypasses the public Internet to establish a direct VPC to AWS services connection?
CloudHub
PrivateLink
AWS Direct Connect
Control Tower
App Mesh
Which operating system test utility is used to test connectivity?
ping
traceroute
Reachability Analyzer
Route Analyzer
nslookup
What steps should be taken to enhance the security of your site-to-site VPN connection? (Select three.)
Implement IAM restrictions
Turn on KMS
Enable CloudTrail
Enable AWS Shield
Prevent exposing sensitive information in tags
What networking device forwards traffic based on MAC addresses?
Router
Gateway
Switch
Direct Connect
Load balancer
The software-defined networking architecture separates which networking functions from each other? (Select two.)
Control plane
Application plane
Security plane
Forwarding plane
Route forwarding table
What is required by AWS to establish a DX cross-connection?
Enable OSPF routing
Multimode fiber
Letter of Authorization
Peering agreement
CloudFront gateway
What networking device forwards traffic based on IP destination addresses?
Router
Gateway
Switch
Direct Connect
Load balancer
You are troubleshooting a connection over the Internet from your client laptop in Austin to an DynamoDB database located in the Asia-Pacific Tokyo region. You suspect that there is no active route. What client utility can you use to see where the traffic is being dropped?
Reachability Analyzer
traceroute
CloudTrail
Route Analyzer
ping
You are experiencing variable delays and congestion on your site-to-site VPN connection in the US West Oregon region. What alternative connection strategy is a viable solution?
Accelerated site-to-site
CloudHub
Data center peering
CloudHSM
What type of optical hardware does AWS use for Direct Connect interconnections?
LC
SC
SFP
SR
Multimode
Your site-to-site VPN connections are dropping, and you suspect that there is a routing issue in your service provider’s network. Which utility can be used to determine where the drops are occurring?
Route Analyzer
AWS Shield
ping
traceroute
AWS Detective
What data center technology uses Northbound and Southbound API calls for configuration operations?
Transit Gateway
CloudHub
API Gateway
SDN
Control Tower
What networking device translates protocols?
Router
Gateway
Switch
Direct Connect
Load balancer
Which AWS service is used to interconnect VPCs and on-premises workloads using a central regional router?
API Gateway
SDN
Transit Gateway
Route 53
CloudMap
You are investigating to see if there is a missing route in your Transit Gateway instance. Which AWS utility can provide you with source-to-destination routing information?
Reachability Analyzer
traceroute
CloudTrail
Route Analyzer
CloudWatch
What AWS service is used to share resources between accounts?
Resource Access Manager
CloudHub
CloudMap
AppFlow
CloudShell
What values does the traceroute utility display? (Select three.)