AWS Certified - David Mayer - E-Book

AWS Certified E-Book

David Mayer

0,0
8,49 €

oder
-100%
Sammeln Sie Punkte in unserem Gutscheinprogramm und kaufen Sie E-Books und Hörbücher mit bis zu 100% Rabatt.

Mehr erfahren.
Beschreibung

Everything You Need to Know to Qualify AWS Exams

  • Do you want to become Amazon Web Services Certified?
  • Do you want to uplift your career by passing AWS certifications?

If you answered "yes" to any of these, then this is the perfect, educational and informational book for you!
Hello! Welcome to "ALL IN ONE AWS Certified".
Amazon Web Services (AWS) is now the leader in the world of information technology. With an increasing global interest in leveraging cloud infrastructure, the AWS Cloud from Amazon offers a cutting-edge platform for architecting, building, and deploying web-scale cloud applications. Amazon Web Services (AWS) Certification is fast becoming the must-have certificates for any IT professional working with AWS.
This is your opportunity to take the next step in your career by expanding and validating your skills through AWS certifications
This guide is what you need for comprehensive content and robust study tools that will help you gain the edge on exam day and throughout your career. Amazon Web Services (AWS) Certification is fast becoming the must-have certificates for any IT professional working with AWS. Comprehensive and up-to-date content and excellent study tools make this guide a must-have resource for those seeking AWS certifications. This guide is designed to help you pass the exam with ease. This definitive volume also serves as an essential on-the-job reference
Here's what makes this book special:
  • Explore AWS terminology and identity and access management
  • Become Intimately Familiar with The AWS Platform
  • Detailed explanation of answers
  • 100% verified answers and explanations to each question
  • Entro la fine di questo libro sarai pronto a sostenere gli esami AWS
  • La conclusione di questo libro ti fornirà una comprensione completa e una conoscenza approfondita di tutti gli strumenti
  • Molto, molto di più!

Das E-Book können Sie in Legimi-Apps oder einer beliebigen App lesen, die das folgende Format unterstützen:

EPUB

Veröffentlichungsjahr: 2020

Bewertungen
0,0
0
0
0
0
0
Mehr Informationen
Mehr Informationen
Legimi prüft nicht, ob Rezensionen von Nutzern stammen, die den betreffenden Titel tatsächlich gekauft oder gelesen/gehört haben. Wir entfernen aber gefälschte Rezensionen.



AWS Certified

David Mayer

2020-06-11

ALL IN ONE

AWS Certified
Learn The Secrets To Passing The AWS Exams And Getting All The Certifications

How to Get a 50% Discount

If you have come this far and are curious about how to get a unique offer, then you surely understand it is essential for you to take the right Amazon Certification now. There is no more time to waste; it's time to be certified in the right way according to your skills.

By purchasing this book you will then be entitled to an incredible 50% discount code on all products available at www.Certification-questions.com

It is a unique offer, and you will finally be able to understand which is the Certification required for your career, understand how to take the Exam and what are the prerequisites. Also, you will be able to use the only Simulated Exam that always has the latest questions available with 100% guaranteed success and a money back guarantee policy.

Don't wait, send us a copy to [email protected]:

• of your book
• of your purchase receipt

And, we will automatically send you a discount code equal to 50% for the best Exam Simulator available on the market.

Thanks - Certification-questions.com

Introduction

Amazon Certifications are the only way of demonstrating the skills and technical knowledge required for design and deploy services based on AWS infrastructure. In other words, getting an Amazon Certification is a way to document your experience, highlight your knowledge, gain more trust, and help build the right Cost Saving Cloud Solutions for your business.

The available Certifications are divided into three categories: Architecting, Developing, and Operations.

Each category consists of three levels of Certification: the Foundation level offers basic and generic skills, which are subsequently built upon at the Associate and Professional levels. Each level offers further developments on previous information given.

There is also a Specialty level Certification, which certifies the possession of advanced skills in specific technical areas.

This guide provides all the information you need to easily pass the official Amazon Exams. Whether you are a beginner or an expert, our team will provide you with everything you need to start studying in detail.

In this guide we will offer you step by step information on the following topics:

• Amazon Certification Exam registration procedure
• Amazon Certification Exam topics
• Benefits of obtaining an Amazon Certification
• Requirements for Amazon Certification Exams
• The Certification path describes the knowledge of the technologies and related skills necessary to pass the Exams
• Duration of the Exam
• Exam format
• Certified professional salary in different countries
• Price of Amazon Certification Exams
• Practical tests
• How to obtain the Certification that best suits your professional growth
• 50% discount on the purchase of the Web And Mobile Simulator available at www.Certification-questions.com
• 100% success guarantee

The guide contains everything you need to prepare for the official Amazon Exams, and to master the skills needed to obtain the Certification that best suits your career path.

In addition to that, we will also provide you with everything you need for making the right decision when choosing an Amazon Certification: The material in this guide helps professionals to choose the right Certification and to improve their knowledge to pass the official Certification Exam quickly and easily. Our team already provides selected and targeted questions \ answer content to consolidate professional preparation through practical tests and training material.

Our guide provides 100% Exam information, ensuring your preparation is solid and detailed. Thanks to this guide, you will obtain all the necessary information for choosing and passing the Certification that best suits your needs within the huge Amazon Certification Program.

Copyright

PUBLISHED BY

certificaton-questions.com

Copyright @ 2019 Certification Questions

All rights reserved. No part of the contents in this may be reproduced or transmitted in form by any means (electronic, photocopying, recording, or otherwise) without prior written permission of the publisher.

First Edition

This book is provided to expresses the author's views and opinions. The views and opinions expressed in this book including URLs and other Internet websites referenced may change without notice.

Any trademarks, service marks, product names or named features in this book are assumed to the property of their respective owners and are used only for reference. There is no implied endorsement if the author references one of these terms, logos, or trademarks.

Some examples given are provided for illustration and learning purposes, and are fictitious. No real association or connection is intended or inferred.

Dedication

Do you know how?

You choose a book then go to the Dedication Page and find that once again the author has dedicated a book to someone else and not to you.

Not this time.

This book is dedicated to the readers, as, without you, there would be no need for this book to have been written.

Hopefully the effort put into producing this resource guide will result in value and success when you sit your certification exam.

This one’s for you. Thanks - Certification-questions.com

Acknowledgments

The world is better, thanks to people who want to develop and guide others. What makes it even better are the people who share the gift of their time to guide future leaders. Thank you to all who strive to grow and help others to grow.

Without the experience and support of my colleagues and team at Certification-questions.com, this book would not exist. You have given me the opportunity to lead a great group of people to become a leader of great leaders. It is a blessed place. Thanks to the Certification-questions.com team.

I want to say thank you to everyone who ever said anything positive to me or taught me something. It was your kind words and actions over the years that drove me to help others in my turn. THANK YOU.

PREFACE

Are you looking for valid Practice Tests for Amazon Certification?

This book will guide on how you can pass the Amazon Certification Exam using Practice Tests.

We will cover a large set of information for Amazon Certification topics, so you will systemically discover how to pass the Certification exam.

This book will also explore many of your questions, such as:

• Amazon Exam topics
• What are the essential criteria for passing the Official Amazon Exam?
• How much Amazon Exam Cost?
• What is the format of the Amazon Exam?
• The advantage of Amazon Exam Certification
• What are the difficulties of Amazon Exam Certification?

We appreciate you taking the time to read this book, and we are really excited to assist you on your career growth journey.

How to Use This Book

There are four main components to the present Amazon Study Guide.

First, the Introduction, in which you will get to know about the importance of Amazon Certification and Practice Tests.

Secondly, the Table of Contents proves quite helpful for maneuvering through the ebook.

Thirdly, there is the Content, in which you will get to know about the different methods of studying for the Amazon Certification Exam that will help you to pass the Certification Exam on your first attempt.

Fourthly, the Summary, in which you will read the brief statement or account of the main points of the Amazon Certification Exam.

Index

How to Get a 50% Discount

Introduction

Copyright

Dedication

Acknowledgments

PREFACE

How to Use This Book

Index

Amazon Exams

Chapter 1: AWS-CERTIFIED-ADVANCED-NETWORKING-SPECIALTY - AWS Certified Advanced Networking - Specialty (ANS-C00)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-ADVANCED-NETWORKING-SPECIALTY

Chapter 2: AWS-CERTIFIED-ALEXA-SKILL-BUILDER-SPECIALTY - AWS Certified Alexa Skill Builder - Specialty

Exam Guide

Sample Practice Test for AWS-CERTIFIED-ALEXA-SKILL-BUILDER-SPECIALTY

Chapter 3: AWS-CERTIFIED-BIG-DATA-SPECIALTY - AWS Certified Big Data - Specialty (BDS-C00)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-BIG-DATA-SPECIALTY

Chapter 4: AWS-CERTIFIED-CLOUD-PRACTITIONER - AWS Certified Cloud Practitioner (CLF-C01)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-CLOUD-PRACTITIONER

Chapter 5: AWS-CERTIFIED-CLOUD-PRACTITIONER-JPN - Amazon AWS Certified Solutions Architect - Cloud Practitioner (AWS-Certified-Cloud-Practitioner日本語版)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-CLOUD-PRACTITIONER-JPN

Chapter 6: AWS-CERTIFIED-DATA-ANALYTICS-SPECIALTY - AWS Certified Data Analytics - Specialty (DAS-C01)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-DATA-ANALYTICS-SPECIALTY

Chapter 7: AWS-CERTIFIED-DATABASE-SPECIALTY - AWS Certified Database - Specialty (beta)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-DATABASE-SPECIALTY

Chapter 8: AWS-CERTIFIED-DEVELOPER-ASSOCIATE-2018 - AWS Certified Developer - Associate 2018

Exam Guide

Sample Practice Test for AWS-CERTIFIED-DEVELOPER-ASSOCIATE-2018

Chapter 9: AWS-CERTIFIED-DEVELOPER-ASSOCIATE - AWS Certified Developer Associate (DVA-C01)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-DEVELOPER-ASSOCIATE

Chapter 10: AWS-CERTIFIED-DEVELOPER-ASSOCIATE-JP - AWS Certified Developer - Associate (AWS-Certified-Developer-Associate日本語版)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-DEVELOPER-ASSOCIATE-JP

Chapter 11: AWS-CERTIFIED-DEVELOPER-ASSOCIATE-KR - AWS Certified Developer - Associate (AWS-Certified-Developer-Associate Korean Version)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-DEVELOPER-ASSOCIATE-KR

Chapter 12: AWS-CERTIFIED-MACHINE-LEARNING-SPECIALTY - AWS Certified Machine Learning - Specialty (MLS-C01)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-MACHINE-LEARNING-SPECIALTY

Chapter 13: AWS-CERTIFIED-SECURITY-SPECIALTY - AWS Certified Security - Specialty (SCS-C01)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-SECURITY-SPECIALTY

Chapter 14: AWS-CERTIFIED-SOLUTIONS-ARCHITECT-ASSOCIATE-2018 - AWS Certified Solutions Architect - Associate 2018 (SAA-001)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-SOLUTIONS-ARCHITECT-ASSOCIATE-2018

Chapter 15: AWS-CERTIFIED-SOLUTIONS-ARCHITECT-ASSOCIATE - AWS Certified Solutions Architect - Associate (SAA-C01)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-SOLUTIONS-ARCHITECT-ASSOCIATE

Chapter 16: AWS-CERTIFIED-SOLUTIONS-ARCHITECT-ASSOCIATE-SAA-C01 - AWS Certified Solutions Architect - Associate (SAA-C01)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-SOLUTIONS-ARCHITECT-ASSOCIATE-SAA-C01

Chapter 17: AWS-CERTIFIED-SOLUTIONS-ARCHITECT-PROFESSIONAL - AWS Certified Solutions Architect - Professional (SAP-C01)

Exam Guide

Sample Practice Test for AWS-CERTIFIED-SOLUTIONS-ARCHITECT-PROFESSIONAL

Chapter 18: AWS-DEVOPS-ENGINEER-PROFESSIONAL - AWS DevOps Engineer - Professional (DOP-C01)

Exam Guide

Sample Practice Test for AWS-DEVOPS-ENGINEER-PROFESSIONAL

Chapter 19: AWS-SOLUTIONS-ARCHITECT-ASSOCIATE-JP - AWS Certified Solutions Architect - Associate (SAA-C02) (AWS-Solutions-Architect-Associate日本語版)

Exam Guide

Sample Practice Test for AWS-SOLUTIONS-ARCHITECT-ASSOCIATE-JP

Chapter 20: AWS-SYSOPS - AWS Certified SysOps Administrator (SOA-C01)

Exam Guide

Sample Practice Test for AWS-SYSOPS

Chapter 21: SAA-C02 - Amazon AWS Certified Solutions Architect - Associate (SAA-C02) Exam

Exam Guide

Sample Practice Test for SAA-C02

SUMMARY

About The Author

APPENDIX

Amazon Exams

Amazon Certified Professionals form a unique community with Amazon as its hub.Individuals can take advantage of the networking and professional growth opportunities which according to the research is a much more poignant aspect of the value of certification that was previously envisioned. Amazon also recognizes that the community is an important way to engage with its customer base.

The Certification-questions.com team has worked directly with industry experts to provide you with the actual questions and answers from the latest versions of the Amazon exam. Practice questions are proven to be the most effectively way of preparing for certification exams.

Amazon certified professionals are certified individuals who specialize in Amazon information technology programs and applications. Experts in the field of Amazon programs, they focus their technical support skills in various areas, ranging from operating systems, cloud solutions to Web development.

With a certificate, your value increases when you apply for jobs. According to Amazon your chances of getting hired increases 5 times. According to Amazon, 86% of hiring managers indicate that they prefer job applicants having an IT certificate. And Amazon certification is a preference over some unknown computer training institutes' certificates. Eight out of ten Hiring Managers wish to verify the certificates provided by job applicants. Further, according to Amazon, 64% of IT managers prefer Amazon certificates to other certificates. Certification, training, and experience are the three main areas that provide better recognition to a person when it comes to promotions and incentives.

We offers an online service that allows students to study through tests questions. The Simulator is built to reflect the final exam structure: It is an excellent study material as it offers the ability to run an online actual exam. Every question is also associated with the solution and each solution is explained in detail.

Chapter 1: AWS-CERTIFIED-ADVANCED-NETWORKING-SPECIALTY - AWS Certified Advanced Networking - Specialty (ANS-C00)

 

Exam Guide

AWS Certified Advanced Networking - Specialty exam validates technical expertise in developing and maintaining applications on the AWS Cloud Landscape:

AWS Certified Advanced Networking - Specialty is one of the advance level certification in the AWS Cloud, is intended for those individuals who perform complex networking tasks. This examination validates advanced technical skills and experience in designing and implementing AWS and hybrid IT network architectures at larger scale.

This certification exam is targeted towards cloud professionals, cloud Network Architects on AWS.Candidates for this exam will have relevant work experience in AWS solutions designing and deployment strategy for an end-to-end networking solutions.This is the list of the contents in our AWS Certified Advanced Networking - Specialty Practice Test:

• Design & Implement Cloud and Hybrid Solutions
• Design & Implement Networking Infrastructure
• Design & Implement Network Security in AWS Cloud
• Integration of application services with AWS Network
• Perform AWS Automation Task

Our AWS Certified Advanced Networking - Specialty Dumps will include below mentioned topics with Exam focused percentage:

Design and implement hybrid IT network architectures at scale - 23%Design and implement AWS networks - 29%Automate AWS tasks - 8%Configure network integration with application services - 15%Design and implement for security and compliance - 12%Manage, optimize, and troubleshoot the network - 13%

Candidate must have good understanding of on-premise networking. It would be really well if candidates having these knowledge:

• Advanced networking architectures and interconnectivity options (e.g., IP VPN, MPLS/VPLS)
• Networking technologies within the OSI model, and how they affect implementation decisions
• Development of automation scripts and tools
• Routing architectures (including static and dynamic)
• Multi-region solutions for a global enterprise
• Highly available connectivity solutions (e.g., DX, VPN)
• CIDR and sub-netting (IPv4 and IPv6)
• IPv6 transition challenges
• Generic solutions for network security features, including WAF, IDS, IPS, DDoS protection, and Economic
• Denial of Service/Sustainability (EDoS)

AWS Certified Advanced Networking - Specialty Exam Dumps Provided Study Notes:

Certification-questions.com expert team recommend you to prepare some notes on these topics along with it don't forget to practice AWS Certified Advanced Networking - Specialty Exam Dumps which been written by our expert team, Both these will help you a lot to clear this exam with good grace.

• Elastic Network Interfaces
• Elastic IPs
• Elastic Network Adapters
• Enhanced Networking
• VPC Gateways
• VPC Interfaces
• PrivateLink
• VPCs
• EC2
• Security Groups/NACLs
• Direct Connect
• VPN
• Routing Scenarios
• Link Aggregation Groups (LAGs)
• Maximum Transmission Units (MTU)
• OSI Layers
• Placement Groups
• Route 53
• Load Balancing
• AWS Workspaces
• Active Directory
• CloudFront
• AWS Workspaces
• DDOS and Environment Protection
• Networking Tools

AWS Certified Advanced Networking - Specialty Exam Overview:

• Format: Multiple choice, multiple answer
• Length of Examination: 170 minutes
• Passing Score: 75-80%
• Registration Fee: 300 USD

Steps for AWS Certified Advanced Networking - Specialty Exam booking:

• Visit to website https://www.aws.training
• Signup/Login to AWS account
• Search for AWS Certified Advanced Networking - Specialty Certifications Exam
• Select Date and Center of examination and confirm with payment value of 300$

Benefits of having AWS Certified Advanced Networking - Specialty Certifications:

Obtaining this certification will put you amongst the first engineers world-wide to gain a specialist certification with AWS. On its own it demonstrates your Ninja-level Networking skills - showing any employer you are capable of being lead engineer on complex AWS and Hybrid cloud integration projects. Or maybe you are working towards the coveted 7/7 AWS Certification Achievement - either way, this course will deliver and in return you are getting highly paid jobs in Cloud.

Difficulty in writing AWS Certified Advanced Networking - Specialty Exam:

The exam is difficult for someone without a specialist's background, and just studying would definitely not have been enough:the questions involved required either reasoning through the scenario or having directly experienced a networking situation or knowing how a service would work.Apart from above most challenging things which you can find in exam is about different scenario based questions. Need proper attention while reading those question, Time Management and proper understanding of question will help you out to get through with the exam.AWS Certified Advanced Networking - Specialty Exam Dumps will be helping you out to overcome with all these challenges

For more info visit:

- AWS Certified Advanced Networking - Specialty Exam Reference- AWS Whitepapers- AWS Security Best Practices- Security at Scale: Governance in AWS- Overview of AWS Security - Network Security- Security at Scale: Logging in AWS- AWS Best Practices for DDoS Resiliency- An Introduction to High Performance Computing on AWS- Amazon Virtual Private Cloud Network Connectivity Options- Integrating AWS with Multiprotocol Label Switching- Best Practices for Deploying Amazon WorkSpaces- AWS Documentation

 

Sample Practice Test for AWS-CERTIFIED-ADVANCED-NETWORKING-SPECIALTY

 

Question: 1 One Answer Is Right

Your organization’s corporate website must be available on www.acme.com and acme.com. How should you configure Amazon Route 53 to meet this requirement?

Answers:

A) Configure acme.com with an ALIAS record targeting the ELB. www.acme.com with an ALIAS record targeting the ELB.

B) Configure acme.com with an A record targeting the ELB. www.acme.com with a CNAME record targeting the acme.com record.

C) Configure acme.com with a CNAME record targeting the ELB. www.acme.com with a CNAME record targeting the acme.com record.

D) Configure acme.com using a second ALIAS record with the ELB target. www.acme.com using a PTR record with the acme.com record target.

Solution: A

Question: 2 One Answer Is Right

You are building an application in AWS that requires Amazon Elastic MapReduce (Amazon EMR). The application needs to resolve hostnames in your internal, on-premises Active Directory domain. You update your DHCP Options Set in the VPC to point to a pair of Active Directory integrated DNS servers running in your VPC. Which action is required to support a successful Amazon EMR cluster launch?

Answers:

A) Add a conditional forwarder to the Amazon-provided DNS server.

B) Enable seamless domain join for the Amazon EMR cluster.

C) Launch an AD connector for the internal domain.

D) Configure an Amazon Route 53 private zone for the EMR cluster.

Solution: B

Explanation:

Explanation: References: https://aws.amazon.com/blogs/security/how-to-connect-your-on-premises-active-directory-to- aws-using-ad-connector/

Question: 3 One Answer Is Right

You have a three-tier web application with separate subnets for Web, Applications, and Database tiers. Your CISO suspects your application will be the target of malicious activity. You are tasked with notifying the security team in the event your application is port scanned by external systems. Which two AWS Services cloud you leverage to build an automated notification system? (Choose two.)

Answers:

A) Internet gateway

B) VPC Flow Logs

C) AWS CloudTrail

D) Lambda

E) AWS Inspector

Solution: C, D

Explanation:

Explanation: References: https://aws.amazon.com/blogs/security/how-to-receive-alerts-when-specific-apis-are-called-by- using-aws-cloudtrail-amazon-sns-and-aws-lambda/

Question: 4 One Answer Is Right

You are designing the network infrastructure for an application server in Amazon VPC. Users will access all the application instances from the Internet and from an on-premises network. The on-premises network is connected to your VPC over an AWS Direct Connect link. How should you design routing to meet these requirements?

Answers:

A) Configure a single routing table with two default routes: one to the Internet via an IGW, the other to the on-premises network via the VGW. Use this routing table across all subnets in your VPC.

B) Configure two routing tables: one that has a default route via the IGW, and another that has a default route via the VGW. Associate both routing tables with each VPC subnet.

C) Configure a single routing table with a default route via the IGW. Propagate a default route via BGP on the AWS Direct Connect customer router. Associate the routing table with all VPC subnet.

D) Configure a single routing table with a default route via the IGW. Propagate specific routes for the on- premises networks via BGP on the AWS Direct Connect customer router. Associate the routing table with all VPC subnets.

Solution: D

Question: 5 One Answer Is Right

Your company decides to use Amazon S3 to augment its on-premises data store. Instead of using the company’s highly controlled, on-premises Internet gateway, a Direct Connect connection is ordered to provide high bandwidth, low latency access to S3. Since the company does not own a publically routable IPv4 address block, a request was made to AWS for an AWS-owned address for a Public Virtual Interface (VIF). The security team is calling this new connection a "backdoor”, and you have been asked to clarify the risk to the company. Which concern from the security team is valid and should be addressed?

Answers:

A) AWS advertises its aggregate routes to the Internet allowing anyone on the Internet to reach the router.

B) Direct Connect customers with a Public VIF in the same region could directly reach the router.

C) EC2 instances in the same region with access to the Internet could directly reach the router.

D) The S3 service could reach the router through a pre-configured VPC Endpoint.

Solution: A

Question: 6 One Answer Is Right

Your organization uses a VPN to connect to your VPC but must upgrade to a 1-G AWS Direct Connect connection for stability and performance. Your telecommunications provider has provisioned the circuit from your data center to an AWS Direct Connect facility and needs information on how to cross-connect (e.g., which rack/port to connect). What is the AWS-recommended procedure for providing this information?

Answers:

A) Create a support ticket. Provide your AWS account number and telecommunications company’s name and where you need the Direct Connect connection to terminate.

B) Create a new connection through your AWS Management Console and wait for an email from AWS with information.

C) Ask your telecommunications provider to contact AWS through an AWS Partner Channel. Provide your AWS account number.

D) Contact an AWS Account Manager and provide your AWS account number, telecommunications company’s name, and where you need the Direct Connect connection to terminate.

Solution: A

Question: 7 One Answer Is Right

You manage a web service that is used by client applications deployed in 300 offices worldwide. The web service architecture is an Elastic Load balancer (ELB) distributing traffic across four application servers deployed in an autoscaling group across two availability zones. The ELB is configured to use round robin, and sticky sessions are disabled. You have configured the NACLs and Security Groups to allow port 22 from your bastion host, and port 80 from 0.0.0.0/0. The client configuration is managed by each regional IT team. Upon inspection you find that a large amount of requests from incorrectly configured sites are causing a single application server to degrade. The remainder of the requests are equally distributed across all servers with no negative effects. What should you do to remedy the situation and prevent future occurrences?

Answers:

A) Mark the affected instance as degraded in the ELB and raise it with the client application team.

B) Update the NACL to only allow port 80 to the application servers from the ELB servers.

C) Update the Security Groups to only allow port 80 to the application servers from the ELB.

D) Terminate the affected instance and allow Auto Scaling to create a new instance.

Solution: D

Question: 8 One Answer Is Right

A multinational organization has applications deployed in three different AWS regions. These applications must securely communicate with each other by VPN. According to the organization’s security team, the VPN must meet the following requirements: - AES 128-bit encryption - SHA-1 hashing - User access via SSL VPN - PFS using DH Group 2 - Ability to maintain/rotate keys and passwords - Certificate-based authentication Which solution should you recommend so that the organization meets the requirements?

Answers:

A) AWS hardware VPN between the virtual private gateway and customer gateway

B) A third-party VPN solution deployed from AWS Marketplace

C) A private MPLS solution from an international carrier

D) AWS hardware VPN between the virtual private gateways in each region

Solution: D

Question: 9 One Answer Is Right

Refer to the image.You have three VPCs: A, B, and C. VPCs A and C are both peered with VPC B. The IP address ranges are as follows: - VPC A: 10.0.0.0/16 - VPC B: 192.168.0.0/16 - VPC C: 10.0.0.0/16 Instance i-1 in VPC A has the IP address 10.0.0.10. Instance i-2 in VPC C has the IP address 10.0.0.10. Instances i-3 and i-4 in VPC B have the IP addresses 192.168.1.10 and 192.168.1.20, respectively, i-3 and i-4 are in the subnet 192.168.1.0/24. - i-3 must be able to communicate with i-1 - i-4 must be able to communicate with i-2 - i-3 and i-4 are able to communicate with i-1, but not with i-2. Which two steps will fix this problem? (Choose two.)

Answers:

A) Create subnets 192.168.1.0/28 and 192.168.1.16/28. Move i-3 and i-4 to these subnets, respectively.

B) Create subnets 192.168.1.0/27 and 192.168.1.16/27. Move i-3 and i-4 to these subnets, respectively.

C) Change the IP address of i-2 to 10.0.0.100. Assign it an elastic IP address.

D) Create a new route table for VPC B, with unique route entries for destination VPC A and destination VPC C.

E) Create two route tables: one with a route for destination VPC A, and another for destination VPC C.

Solution: A, E

Question: 10 One Answer Is Right

A legacy, on-premises web application cannot be load balances effectively. There are both planned and unplanned events that cause usage spikes to millions of concurrent users. The existing infrastructure cannot handle the usage spikes. The CIO has mandated that the application be moved to the cloud to avoid further disruptions, with the additional requirement that source IP addresses be unaltered to support network traffic-monitoring needs. Which of the following designs will meet these requirements?