Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Amazon Exam ANS-C01 Topic 4 Question 29 Discussion

Actual exam question for Amazon's ANS-C01 exam
Question #: 29
Topic #: 4
[All ANS-C01 Questions]

A company has workloads that run in a VPC. The workloads access Amazon S3 by using an S3 gateway endpoint. The company also has on-premises workloads that need to access Amazon

S3 privately over a VPN connection. The company has established the VPN connection to the VPC.

Which solution will provide connectivity to Amazon S3 from the VPC workloads and the on-premises workloads in the MOST operationally efficient way?

Show Suggested Answer Hide Answer
Suggested Answer: C

The correct solution is to use an S3 interface endpoint and an on-premises DNS resolver. An S3 interface endpoint allows you to access Amazon S3 using private IP addresses within your VPC. An on-premises DNS resolver can be configured to forward the DNS queries for the S3 domain names to the S3 interface endpoint, so that the on-premises workloads can access Amazon S3 privately over the VPN connection. This solution is operationally efficient, as it does not require any additional infrastructure or changes to the existing workloads. The VPC workloads can continue to use the S3 gateway endpoint, which provides lower latency and higher throughput than the S3 interface endpoint.


Contribute your Thoughts:

Bettye
5 months ago
I wonder if they'll offer a 'Rube Goldberg Machine' option, where you have to bounce the S3 request off a series of random EC2 instances before it reaches its destination. Talk about operational efficiency!
upvoted 0 times
Elke
4 months ago
User 2
upvoted 0 times
...
Yan
4 months ago
User 1
upvoted 0 times
...
Cherilyn
4 months ago
C: Yeah, Option A definitely seems like the best choice for operational efficiency in this scenario.
upvoted 0 times
...
Son
4 months ago
B: I agree, Option A seems like the most straightforward approach to ensure connectivity.
upvoted 0 times
...
Rusty
4 months ago
A: Option A sounds like a good solution. Using an ALB to connect to Amazon S3 from both VPC and on-premises workloads seems efficient.
upvoted 0 times
...
...
Nathalie
5 months ago
Option B eliminates the need for the S3 gateway endpoint, making the setup simpler and more streamlined.
upvoted 0 times
...
Josefa
5 months ago
Why do you think option B is better?
upvoted 0 times
...
Nathalie
5 months ago
I disagree, I believe option B is more efficient.
upvoted 0 times
...
Josefa
5 months ago
I think option A is the best solution.
upvoted 0 times
...
Azzie
6 months ago
I agree with Kate. Option C is the way to go. Configuring the DNS resolver to use the private IP addresses is a smart move.
upvoted 0 times
...
Kate
6 months ago
Option C looks the best to me. Using the S3 interface endpoint for both the VPC and on-premises workloads seems like the cleanest and most efficient approach.
upvoted 0 times
Herman
5 months ago
User2
upvoted 0 times
...
Dacia
5 months ago
User1
upvoted 0 times
...
...
Antonette
6 months ago
The proxy fleet with ALB seems like a good solution, but I'm not sure if it's the most operationally efficient. Maintaining the proxy instances could be a hassle.
upvoted 0 times
Rossana
5 months ago
C: What about option D with AWS Direct Connect? It seems like a simpler solution.
upvoted 0 times
...
Amie
5 months ago
B: I agree, but managing the proxy instances might be a challenge.
upvoted 0 times
...
Elise
6 months ago
A: I think option A with the proxy fleet and ALB is a good choice.
upvoted 0 times
...
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77