AWS Certified Solutions Architect Professional SAP-C02 Practice Question

A global enterprise has a hybrid network architecture in the us-east-1 Region. The current setup is as follows:

  • Two on-premises data centers each use AWS Site-to-Site VPN to connect to a central "network-services" VPC.
  • A third corporate office connects to the same VPC by using an AWS Direct Connect private virtual interface that terminates on the VPC's virtual private gateway (VGW).
  • Several application VPCs are peered with the network-services VPC.

Network administrators report that the VPN-connected data centers cannot communicate with the Direct Connect-connected corporate office, and none of the on-premises locations can reach the application VPCs through the network-services VPC. The enterprise wants full, transitive connectivity among all on-premises networks and all VPCs, using a solution that is centrally managed and can scale to dozens of additional VPCs and connections in the future.

Which solution should a solutions architect recommend?

  • Create an AWS Transit Gateway and attach the network-services VPC, each application VPC, a Direct Connect gateway, and both Site-to-Site VPN connections. Use Transit Gateway route tables to allow traffic between all attachments.

  • Deploy redundant third-party virtual router appliances in the network-services VPC, terminate the VPN and Direct Connect links on them, and configure the appliances for transitive routing.

  • Configure AWS VPN CloudHub on the existing virtual private gateway, advertising BGP routes between the VPN connections and the Direct Connect private virtual interface.

  • Enable VGW route propagation for all connections and add static routes in every VPC route table to send traffic between the VPN prefixes and the Direct Connect gateway.

AWS Certified Solutions Architect Professional SAP-C02
Design Solutions for Organizational Complexity
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot