AWS Networking Essentials

Networking is how you connect computers around the world and allow them to communicate with one another

download Export
search_insights Statistics
stylus_note White Board
Quran
calculate Calculator
dictionary Dictionary
network_node Visual Subnet Mask & CIDR Analytics
fullscreen Full Screen
QUESTION OF

volume_mute Read quiz aloud
Views #: 1245
Questions #: 50
Time: 10 minutes
Pass Score: 80.0%
Style
Mode

AWS Direct Connect is a dedicated network connection between your on-premises infrastructure and AWS bypassing the public internet

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Ingress routing is a special routing setup when a route table is directly associated with an internet gateway

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Match AWS Transit Gateway key concepts to their definitions

1 pts
volume_mute
To complete the line match
  1. Click on an item in the first group
  2. Click on an item in the second group
  3. To delete a match, double click on a line

Concept

Association
Attachment
Propagation

Definition

The connection from Amazon VPC, a VPN, Direct Connect, or a connect attachment to a transit gateway
The route table used to route packets coming from an attachment (from Amazon VPC and VPN)
The route table where the attachment's routes are installed
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Direct Connect is a

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


An internet gateway does not have to be attached to a VPC in order to allow internet traffic to an EC2 instance inside the VPC

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Choose the Transit gateway attachment types

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


An EC2 instance allows by default all inbound and outbound traffic

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


You cannot overwrite the routes in the main route table for a specific subnet

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Which of the following steps must be taken to ensure that an EC2 instance can function as a NAT instance in an AWS VPC?

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


AWS created ready-made VPCs to be used as defaults when creating a new EC2 instance

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


A network ACL is stateless

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Transit Gateways connects VPCs and on-premises network through a central hub

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Choose what applies to the main rout table

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


If VPC A is peered with VPC B, and VPC B is peered with VPC C, then VPC A can communicate with VPC C

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


The parts between the dots '.' in the following IPv4 address are called _______

1 pts
volume_mute
Missing

192.168.1.30

note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


A Local Gateway (LGW) in AWS is a component designed to support hybrid cloud connectivity by enabling on-premises data centers to connect with AWS Outposts

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


CIDR Notation

1 pts
volume_mute

In this CIDR, identify the fixed and flexible parts

192.168.1.0/24

  • Fixed (1)
  • Flexible (2)
Please drag and drop the selected option in the right place or type it instead
192.168.1
192.168
192
168.1
0
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


In route table for a Transit Gateway, which route wins if there are multiple routes pointing to the same destination

1 pts
volume_mute
Please drag and drop the options to sort them

Reorder to find out the right routing match

Most specific route (longest prefix match)
Static route entries, including static site-to-site VPN routes
BGP-propagated routes from Direct Connect gateway
BGP-propagated routes from AWS Site-toSite VPN
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


You cannot route traffic to a NAT gateway through a VPC peering connection, site-to-site VPN connection, or Direct Connect

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


AWS Direct Connect is restricted to one Region

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Communication between VPCs in different regions could be possible if their regional transit gateways are peered

1 pts
volume_mute

transit gateway peering

note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


The default network ACL for a subnet allows all traffic in and out of the subnet

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


A subnet cannot span multiple availability zones

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


A VPC can contain only one subnet

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


An IPv4 address is a 32-bits IP address

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Classify AWS Gateways

1 pts
volume_mute
AWS Gateway
×Virtual private gateway
×Transit gateway
×Internet gateway
×NAT gateway
×Direct Connect gateway
×Customer gateway
×Local gateway
Global resource
Regional resource
Local resource

note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Which of the following best describes the purpose of a Bastion Host in AWS?

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


The main route table is used implicitly by subnets that do not have an explicit route table association

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


What is the primary benefit of using AWS PrivateLink for accessing AWS services or third-party services?

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


There is exactly one local gateway per Outpost

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Which of the following is true for a security group's default setting?

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


An Internet gateway is attached to subnets

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


An internet gateway is highly available and scalable

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


AWS Transit Gateway is a regional resource that resides outside a VPC

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


AWS Direct Connect vs AWS Virtual Private Gateway

1 pts
volume_mute

A client wants to establish a secure private connection between on-premises systems and AWS cloud network.  He does not want an expensive solution and wants it quickly with high security.  Which option should he choose?

note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


You can associate a route table to

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


A network access control list (network ACL) filters traffic at the Amazon EC2 instance level.

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Main route table

1 pts
volume_mute

When you create a VPC, AWS creates a route table called the (1) route table. A route table contains a set of rules, called (2), that are used to determine where network traffic is directed.

Please drag and drop the selected option in the right place or type it instead
main
minor
routes
rules
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


In the below figure, you can leverage the AWS Transit Gateway to allow VPC A and B to communicate with VPC C and D through the Direct Connect gateway

1 pts
volume_mute
Direct Connect with Transit Gateway setup connecting multiple VPCs in same region
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


In the digital world, computers handle the delivery of messages through ___________

1 pts
volume_mute
Missing
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


Is this setup correct as shown by the below figure?

1 pts
volume_mute
VPC to Virtual Gateway.  VPC 2 connects to Virtual Gateway hosted in VPC 1 where VPC 1 uses this Virtual Gateway
VPC to Virtual Private Gateway. VPC 2 connects to Virtual Private Gateway hosted in VPC 1 where VPC 1 uses this Virtual Private Gateway
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


In order to deliver a message to a computer we need an _______ address

1 pts
volume_mute
Missing
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


AWS default VPC allows internet access by default

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


To enable public access to an EC2 instance, you need an internet gateway

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


AWS reserve some IPs. Map their definitions

1 pts
volume_mute
IP address Reserved for:
10.0.0.0 (1)
10.0.0.1 (2)
10.0.0.2 (3)
10.0.0.3 (4)
10.0.2.255 (5)
Please drag and drop the selected option in the right place or type it instead
Network broadcast address
VPC local router
Future use
Network address
DNS server
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


You have to allow all outbound traffic in a security group in order for your web server to respond to inbound requests

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


A virtual private gateway allows VPN connectivity between a on-premises data center systems and AWS resources over the public internet

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


If you are peering VPC A with VPC B, then CIDR ranges for both of them must not overlap

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


A network access control list (network ACL) lets you control what kind of traffic is allowed to enter or leave your subnet

1 pts
volume_mute
note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation


How many IPs available in the following CIDR

1 pts
volume_mute

192.168.1.0/24

note_alt Add notes
flag Flag
volume_mute

Correct Answer

Explanation