Soru

Zorluk: KolayAWS Network Services

A startup is designing a secure, multi-VPC network architecture on AWS. They need to configure network routing between their VPCs and control incoming traffic to their Amazon EC2 instances. Which TWO of the following statements correctly describe AWS networking or security components? (Select TWO.)

  1. Security groups act as stateful firewalls that control traffic at the instance level.Cevap
  2. AWS Transit Gateway acts as a central hub to connect multiple Virtual Private Clouds (VPCs) and on-premises networks.Cevap
  3. C
    Network Access Control Lists (Network ACLs) are stateful firewalls that operate at the instance level.
  4. D
    Security groups are stateless firewalls that control traffic at the subnet level.
  5. E
    VPC Peering allows transitive routing, meaning traffic can pass through an intermediate VPC to reach another VPC.

Cevap

Security groups act as stateful firewalls at the instance level, and AWS Transit Gateway acts as a central hub to interconnect multiple VPCs and on-premises networks.
Security groups are stateful firewalls operating at the instance level, meaning outbound response traffic is allowed regardless of outbound rules. AWS Transit Gateway acts as a centralized cloud router, simplifying network architecture when interconnecting multiple VPCs and on-premises systems.

Adım Adım Çözüm

1
Identify the features of Security Groups.
Security groups are stateful firewalls that operate at the instance level (allowing return traffic automatically).
This confirms that the statement about security groups acting as stateful firewalls at the instance level is correct.
2
Identify the networking service used for interconnecting multiple VPCs.
AWS Transit Gateway serves as a central hub for connecting multiple VPCs and on-premises environments, supporting transitive routing.
This confirms that AWS Transit Gateway is the correct solution for simplifying multi-VPC connectivity.

Anahtar Kavram

AWS Network Security and Routing
Bu soruyu puanla