AWS Certified CloudOps Engineer Associate SOA-C03 Practice Question
An organization has three AWS accounts (Dev, Test, Prod), each containing a VPC with non-overlapping CIDR ranges. The teams need full bidirectional private connectivity between all VPCs and expect to add more VPCs and an on-premises data center next quarter. They want to minimize the number of connections and simplify route management while avoiding exposure to the internet. Which solution best meets these requirements?
Establish full-mesh VPC peering connections among the existing VPCs and create additional peering links as new VPCs are created.
Deploy virtual private gateways in every VPC and build site-to-site VPN tunnels between each pair of VPCs and to the on-premises network.
Create an AWS Transit Gateway in one account, share it with the other accounts using AWS RAM, and attach each VPC; later attach the on-premises network with Direct Connect.
Expose required services through AWS PrivateLink by creating an endpoint service in each VPC and configuring interface endpoints in the other VPCs.
A single AWS Transit Gateway provides a hub-and-spoke topology that enables transitive routing between any number of attached VPCs. It can be shared across accounts with AWS Resource Access Manager, so each VPC needs only one attachment, greatly reducing the total connections and route entries compared with a VPC-peering mesh or many VPN tunnels. The gateway can later attach to a Direct Connect gateway for on-premises connectivity without redesign. PrivateLink exposes only specific services and does not allow full VPC-to-VPC traffic. Therefore, attaching all VPCs to an AWS Transit Gateway is the most scalable and operationally simple choice.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is AWS Transit Gateway and why is it used?
Open an interactive chat with Bash
What is AWS Resource Access Manager (RAM) and how does it work with Transit Gateway?
Open an interactive chat with Bash
How does Direct Connect integrate with AWS Transit Gateway for on-premises connectivity?
Open an interactive chat with Bash
What is an AWS Transit Gateway?
Open an interactive chat with Bash
How does AWS Resource Access Manager (RAM) work with Transit Gateway?
Open an interactive chat with Bash
What is the benefit of Direct Connect integration with AWS Transit Gateway?
Open an interactive chat with Bash
AWS Certified CloudOps Engineer Associate SOA-C03
Networking and Content Delivery
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .