Soru

Zorluk: OrtaInfrastructure Migration with AWS Application Migration Service (MGN)

A hospitality enterprise is migrating its centralized property management system consisting of multiple legacy servers to AWS using AWS Application Migration Service (MGN). The migration network path is established over an AWS Direct Connect connection terminated at an AWS Transit Gateway that connects to the staging VPC. After installing the AWS Replication Agent on the source servers, the replication status remains in the initiating stage, and data replication fails to start. Which of the following configuration actions should the solutions architect perform to resolve this issue? (Select TWO.)

  1. Configure the on-premises firewalls and the staging area security groups to allow traffic on TCP port 1500 to the replication servers.Cevap
  2. Verify and update the route tables of the staging area subnets to route outbound traffic destined for the on-premises servers via the Transit Gateway.Cevap
  3. C
    Associate the Route 53 Private Hosted Zone with the staging VPC, ensuring that name resolution requests for public endpoints resolve to on-premises IP addresses.
  4. D
    Deploy a single NAT Gateway in the staging VPC to forward replication traffic over TCP port 443 directly to the on-premises data center.
  5. E
    Configure the AWS Replication Agent to authenticate by assuming an IAM role using a SAML 2.0 federation trust relationship.

Cevap

The correct configuration actions are to allow traffic on TCP port 1500 in on-premises firewalls and staging area security groups, and to configure staging area subnet route tables to route on-premises destined traffic through the Transit Gateway.
The correct actions require opening TCP port 1500 on firewalls and security groups to allow data replication, and ensuring the staging area subnet route tables route traffic back to the on-premises network through the Transit Gateway. This establishes the necessary TCP connection and bidirectional routing for the replication servers.

Adım Adım Çözüm

1
Analyze the replication architecture and state
Identify that the Replication Agent is stuck in 'Initiating', which points to either network connectivity or credential permission issues.
To narrow down why replication traffic is not reaching the staging area.
2
Check the port configurations for data replication
Ensure TCP port 1500 is allowed between the source servers and the staging subnets.
AWS MGN uses TCP port 1500 exclusively for secure replication data transport.
3
Verify transit network routing path
Ensure that the route tables in the staging subnets have routes pointing back to the on-premises networks via the Transit Gateway.
Bidirectional routing is necessary to establish and maintain the replication tunnel.

Anahtar Kavram

Infrastructure Migration with AWS Application Migration Service (MGN)
Tahmini Süre:2m 0s
Bu soruyu puanla