AWS Certified CloudOps Engineer Associate SOA-C03 Practice Question
A company uses an AWS Transit Gateway (TGW) with one route table that receives propagated routes from an on-premises data center over AWS Direct Connect. Two VPCs are attached as spokes. Instances in VPC-B can reach the data center, but instances in VPC-A cannot. The VPC-A attachment is associated with a separate TGW route table that has no propagated routes. What is the MOST operationally efficient way to restore connectivity for VPC-A?
Establish a VPC peering connection between VPC-A and the transit gateway and add static routes to each subnet route table.
Deploy a NAT gateway in VPC-A and add a route in the on-premises router that points VPC-A CIDR to the NAT gateway public IP.
Create a new Direct Connect gateway and attach VPC-A directly to it, then advertise the on-premises prefixes.
Associate the VPC-A attachment with the existing TGW route table that already contains the Direct Connect propagated routes.
The TGW chooses the next hop based on the route table associated with the attachment on which the traffic enters. Because VPC-A is associated with an empty route table, traffic destined for the on-premises network is dropped. Re-associating the VPC-A attachment with the existing route table that already contains the Direct Connect propagated prefixes immediately makes those routes available for traffic from VPC-A. No new gateways, NAT devices, or peering links are required, making this the simplest and least costly fix. Deploying a NAT gateway would only enable internet egress, a new Direct Connect gateway would not solve the missing TGW association, and VPC peering cannot connect a VPC to a TGW.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is an AWS Transit Gateway (TGW)?
Open an interactive chat with Bash
What is the role of a route table in AWS Transit Gateways (TGW)?
Open an interactive chat with Bash
What does 'propagated routes' mean in the context of AWS Transit Gateway?
Open an interactive chat with Bash
AWS Certified CloudOps Engineer Associate SOA-C03
Networking and Content Delivery
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .