Amazon ANS-C00 Exam Practice Questions (P. 4)
- Full Access (377 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #31
Direct Connect locations. You are using two routers, R1 and R2, at your end (one of each Direct Connect connection). R1 and R2 do NOT have connectivity between them. Both routers advertise the same routers over BGP to the VGW. You have a stateful firewall on each router. The routers drop some of the traffic coming from the VPC.
Which two actions should you take to fix this problem? (Choose two.)
- AUse BGP AS prepend attribute to prepend additional AS numbers while advertising routers from R1 to VGW.Most Voted
- BUse BGP local preference attribute to assign R1 to a lower local preference number than R2.
- CUse BGP local preference attribute to assign R1 a higher local preference number than R2.
- DUse BGP MED attribute to assign a higher MED value to the routes advertised R1 to VGW.Most Voted
- EUse BGP MED attribute to assign a higher MED value to the routes advertised from R2 to VGW.
AC

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #32
There is currently an AWS Direct Connect connection into one account with 9 VPCs, each with a virtual network interface (VIF) per VPC.
Which of the following designs will minimize cost while allowing the organization to expand?
- AOrder 10 new Direct Connect connections, one from each of the accounts that will be provisioned. Create private VIFs in each account. Attach one private VIF per VPC.
- BCreate a public VIF on the Direct Connect connection. Leverage the public VIF to create a VPN connection to each VPC.
- CCreate hosted private VIFs in the existing account. Connect a private VIF to an AWS Direct Connect gateway in each account. Connect the gateway in each account to the VPCs.
- DCreate a transit VPC in the existing account that consists of two routers in separate Availability Zones. Connect each VPC to the two routers in the transit VPC by using VPN.Most Voted
D

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #33
Amazon EC2 Auto Scaling for web servers to handle the growth. What architectural approach is optimal to scale the encryption operation?
- AUse multiple CloudHSM instances, and load balance them using a Network Load Balancer.
- BUse multiple CloudHSM instances to the cluster; request to it will automatically load balance.Most Voted
- CEnable Auto Scaling on the CloudHSM instance, with similar configuration to the web tier Auto Scaling group.
- DUse multiple CloudHSM instances, and load balance them using an Application Load Balancer.
A

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #34
Which approach will meet the technical and security requirements while minimizing costs?
- AUse the AWS IPsec VPN for the mobile, desktop, and partner VPN connections. Use network access control lists (Network ACLs) and security groups to maintain routing separation.
- BUse the AWS IPsec VPN for the partner VPN connections. Use an Amazon EC2 instance VPN for the mobile and desktop devices. Use Network ACLs and security groups to maintain routing separation.
- CCreate an AWS Direct Connect connection between on-premises and AWS Use a public virtual interface to connect to the AWS IPsec VPN for the mobile, desktop, and partner VPN connections.
- DUse an Amazon EC2 instance VPN for the desktop, mobile, and partner VPN connections. Use features of the VPN instance to limit routing and connectivity.Most Voted
B

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #35
Internet even if data is encrypted. You have set up two S3 buckets in us-east-1 and us-west-2. Your company data center is located on the West Coast of the
United States. The design must be cost-effective and enable minimal latency.
Which design should you set up?
- AAn AWS Direct Connect connection to us-east-1 and a Direct Connect connection to us-west-2.
- BAn AWS Direct Connect connection to us-east-1.
- CAn AWS Direct Connect connection to us-west-2.Most Voted
- DAn AWS Direct Connect connection to us-west-2 and a VPN connection to us-east-1.
A

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #36
Which step should you take to fix this problem?
- AGenerate new SSL certificates for all web servers and replace current certificates.
- BChange the security policy on the ELB to disable vulnerable protocols and ciphers.Most Voted
- CGenerate new SSL certificates and use ELB to front-end the encrypted traffic for all web servers.
- DLeverage your current configuration management system to update SSL policy on all web servers.
D

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #37
CloudFormation to provision approved reference architectures. At deployment time, IP addresses must be allocated to the VPC. When the VPC is deleted, the
IPAM must reclaim the VPC's IP allocation.
Which method allows for efficient, automated integration of the IPAM with CloudFormation?
- AAWS CloudFormation parameters using the ג€Ref::ג€ intrinsic function
- BAWS CloudFormation custom resource using an AWS Lambda invocation.Most Voted
- CCloudFormation::OpsWorks::Stack with custom Chef configuration.
- DAWS CloudFormation parameters using the ג€Fn::FindInMapג€ intrinsic function.
A

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #38
Which two of the following components should be part of the design? (Choose two.)
- ASelect an instance with support for single root I/O virtualization.Most Voted
- BSelect an instance that has support for multiple ENAs.
- CEnsure that the instance supports jumbo frames and set 9001 MTU.
- DSelect an instance with Amazon Elastic Block Store (EBS)-optimization.
- EEnsure that proper OS drivers are installed.Most Voted
AB
References:
https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/enhanced-networking.html

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #39
- APublic AS number
- BVLAN IDMost Voted
- CIP prefixes to advertiseMost Voted
- DDirect Connect location
- EVirtual private gateway
AE
References:
https://aws.amazon.com/directconnect/faqs/

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #40
What could you do to address the problem so that the AWS Management Console reports the private virtual interface as Available?
- AAttach the virtual private gateway to a VPC and enable route propagation.
- BFilter the public IP pre?xes on the corporate network from the private virtual interface.
- CChange the BGP advertisements from the corporate network to only be a default route.Most Voted
- DAttach the second virtual interface to an alternative virtual private gateway.
D

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
All Pages