AWS Certified CloudOps Engineer Associate SOA-C03 Practice Question

A company connects its production VPC (10.0.0.0/16) to the on-premises network (10.1.0.0/16) through an AWS Transit Gateway and a Site-to-Site VPN attachment. Subnet routes in the VPC point 10.1.0.0/16 to the transit gateway, but the transit gateway route table lists only the VPC CIDR. EC2 instances cannot reach on-premises servers. What change will restore connectivity securely?

  • Deploy a NAT gateway in each private subnet and route traffic to the NAT gateway instead of the transit gateway.

  • Add a 0.0.0.0/0 static route in the transit gateway route table that targets the VPN attachment.

  • Change the VPC subnet route so that 10.1.0.0/16 targets the virtual private gateway used by the VPN.

  • Enable route propagation from the Site-to-Site VPN attachment to the transit gateway route table.

AWS Certified CloudOps Engineer Associate SOA-C03
Networking and Content Delivery
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot