AWS Certified Solutions Architect Professional SAP-C02 Practice Question

Your company is migrating a multi-tier finance application to AWS in several waves. Some application servers will remain in the on-premises data center while others move into multiple AWS accounts. The application components communicate by using the existing private FQDN finance.internal.example.com.

During the migration, the solution must provide bidirectional resolution for AWS-hosted and on-premises hostnames without sending DNS traffic over the public internet. The design must also centralize DNS management to reduce operational overhead and scale to support dozens of workload VPCs in different accounts within the same Region.

Which approach meets these requirements with the LEAST management effort?

  • Launch BIND DNS servers on EC2 instances in every workload VPC, replicate the on-premises zone by zone transfer, and manually update the records for AWS resources.

  • Enable EC2 ClassicLink in each workload VPC and update the DHCP option set so that VPC DNS queries are forwarded directly to the on-premises DNS servers.

  • Create a Route 53 private hosted zone for internal.example.com in every workload VPC and configure the on-premises DNS server with conditional forwarders that point to each VPC's .2 resolver address.

  • In a shared-services account, create Route 53 Resolver inbound and outbound endpoints in a centralized DNS VPC that is connected to the data center by AWS Direct Connect. Host the private hosted zone there, create outbound Resolver rules for on-premises domains, share those rules and the private hosted zone associations with workload VPCs by using AWS Resource Access Manager (RAM), and configure a conditional forwarder on the on-premises DNS server that targets the inbound endpoint IP addresses.

AWS Certified Solutions Architect Professional SAP-C02
Accelerate Workload Migration and Modernization
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot