Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Amazon Exam ANS-C01 Topic 2 Question 15 Discussion

Actual exam question for Amazon's ANS-C01 exam
Question #: 15
Topic #: 2
[All ANS-C01 Questions]

A company has a hybrid cloud environment. The company's data center is connected to the AWS Cloud by an AWS Direct Connect connection. The AWS environment includes VPCs that are connected together in a hub-and-spoke model by a transit gateway. The AWS environment has a transit VIF with a Direct Connect gateway for on-premises connectivity.

The company has a hybrid DNS model. The company has configured Amazon Route 53 Resolver endpoints in the hub VPC to allow bidirectional DNS traffic flow. The company is running a backend application in one of the VPCs.

The company uses a message-oriented architecture and employs Amazon Simple Queue Service (Amazon SQS) to receive messages from other applications over a private network. A network engineer wants to use an interface VPC endpoint for Amazon SQS for this architecture. Client services must be able to access the endpoint service from on premises and from multiple VPCs within the company's AWS infrastructure.

Which combination of steps should the network engineer take to ensure that the client applications can resolve DNS for the interface endpoint? (Choose three.)

Show Suggested Answer Hide Answer
Suggested Answer: A, D, F

Contribute your Thoughts:

Margo
8 months ago
Good point. I think the main difference is that with option D, you don't have to manually create the private hosted zone, which could be more convenient. But with option C, you have more control over the DNS setup.
upvoted 0 times
...
Lucina
8 months ago
Hmm, I'm a bit confused about the difference between options C and D. They both mention creating a private hosted zone, but C says to do it manually while D says to use the automatically created one. I wonder what the implications of each approach are.
upvoted 0 times
...
Staci
8 months ago
I agree. The options mention using private DNS names and creating a private hosted zone, so I believe we need to do that to ensure the DNS resolution works.
upvoted 0 times
...
Kristel
8 months ago
This question seems to be testing our understanding of how to configure DNS for an interface VPC endpoint. I think the key is to ensure that the client applications can resolve the DNS for the SQS endpoint, both from on-premises and from the multiple VPCs.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77