AWS Certified Solutions Architect Professional SAP-C02 Practice Question

A financial services company uses AWS for its primary cloud operations, with multiple VPCs in us-east-1 connected via an AWS Transit Gateway. The company has an existing 10 Gbps AWS Direct Connect connection to its on-premises data center. A new strategic partner requires a highly available and secure connection between the company's AWS environment and the partner's application, which runs in a Microsoft Azure VNet in the East US 2 region. The solution must support a sustained throughput of 1 Gbps, and all traffic must remain on private networks, never traversing the public internet. Which of the following connectivity strategies best meets all the requirements?

  • Establish a Site-to-Site VPN connection with two tunnels for redundancy between the AWS Transit Gateway and a Virtual Network Gateway in the partner's Azure VNet. Configure dynamic routing using BGP over the VPN.

  • Order a 1 Gbps AWS Direct Connect hosted connection from a cloud exchange provider. Through the same provider, provision an Azure ExpressRoute circuit and establish a cross-connect between them. Associate the new transit VIF with a Direct Connect gateway that is attached to the AWS Transit Gateway.

  • Create a new public virtual interface (VIF) on the existing Direct Connect connection. Route traffic from the AWS VPCs to the public IP addresses of the partner's application in Azure. The partner will configure their Network Security Group to allow traffic only from the company's public IP range.

  • Configure an AWS PrivateLink endpoint service fronted by a Network Load Balancer in a central VPC. Instruct the partner to create an Azure Private Link connection that targets the public DNS of the AWS endpoint service to establish a private link.

AWS Certified Solutions Architect Professional SAP-C02
Design Solutions for Organizational Complexity
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot