Soru

Zorluk: OrtaAWS Network Services

An organization is designing a multi-VPC architecture on AWS. They need to establish a hub-and-spoke topology to interconnect multiple Virtual Private Clouds (VPCs) and simplify network routing. Additionally, they must implement a network security control that operates as a stateless firewall to filter traffic entering and leaving their subnets.

Which two AWS services or features should the organization use to meet these requirements? (Select TWO.)

  1. AWS Transit GatewayCevap
  2. Network Access Control Lists (Network ACLs)Cevap
  3. C
    VPC Peering
  4. D
    Security Groups
  5. E
    AWS WAF

Cevap

AWS Transit Gateway and Network Access Control Lists (Network ACLs)
AWS Transit Gateway connects multiple VPCs and on-premises networks through a central hub, avoiding the routing complexity of point-to-point VPC Peering. Network Access Control Lists (Network ACLs) act as stateless firewalls that filter traffic at the subnet level.

Adım Adım Çözüm

1
Analyze the interconnectivity requirement for a multi-VPC architecture with a hub-and-spoke topology.
Determine that AWS Transit Gateway is the correct service as it acts as a centralized cloud router.
AWS Transit Gateway simplifies routing across multiple VPCs and avoids the complex mesh configuration of point-to-point connections.
2
Analyze the security requirement for filtering network traffic at the subnet boundary using a stateless mechanism.
Determine that Network Access Control Lists (Network ACLs) are the correct feature.
Network ACLs are stateless firewalls that control inbound and outbound traffic at the subnet level.

Anahtar Kavram

AWS Network Services
Bu soruyu puanla