AWS Certified Solutions Architect Professional SAP-C02 Practice Question

A company uses AWS Organizations with individual workload accounts and a dedicated networking account. The networking account owns an AWS Transit Gateway (TGW) that must provide connectivity between on-premises resources and VPCs in each workload account. The networking team must remain the only group that can view or change TGW route tables and existing attachments. Application teams should be able to create and administer the attachment for their own VPCs without relying on the networking team to provision resources. The solution must minimize ongoing operational effort and rely solely on native AWS services.

Which approach meets these requirements?

  • Use AWS Resource Access Manager in the networking account to share the existing TGW with the workload accounts and grant each account IAM permission to create and manage its own TGW VPC attachment.

  • Deploy a separate TGW in every workload account and establish peering attachments between each application TGW and the networking TGW to achieve full-mesh connectivity.

  • Create VPC peering connections from each workload VPC to a hub VPC in the networking account that is already attached to the TGW, and update all VPC route tables accordingly.

  • Designate every workload account as an Amazon VPC delegated administrator in AWS Organizations so each team can attach its VPC to the TGW and manage TGW route tables directly.

AWS Certified Solutions Architect Professional SAP-C02
Design Solutions for Organizational Complexity
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot