AWS Certified Solutions Architect Professional SAP-C02 Practice Question

A company runs containerized microservices in Amazon ECS on EC2 capacity that spans two Availability Zones in a single VPC. All tasks reside in private subnets and call several external SaaS APIs over the public internet. Outbound traffic is routed through a single NAT gateway that is deployed in a public subnet in us-east-1a. When an Availability Zone outage affected us-east-1a, the NAT gateway became unreachable and the application experienced a full outage. You must eliminate this single point of failure while keeping the workloads in private subnets and minimizing ongoing operational effort. Which change will MOST effectively meet these requirements?

  • Create a NAT gateway in the second Availability Zone and update each private subnet's route table to send 0.0.0.0/0 traffic to the NAT gateway in the same AZ.

  • Attach an internet gateway directly to the private subnets and add a default route for outbound traffic.

  • Replace the NAT gateway with a NAT instance that is part of an Auto Scaling group configured to launch one instance per Availability Zone.

  • Enable cross-zone load balancing on the existing Application Load Balancer and register targets in both Availability Zones.

AWS Certified Solutions Architect Professional SAP-C02
Continuous Improvement for Existing Solutions
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot