AWS CCP Knowledge Review - Migration & Transfer, Networking & Content Delivery - TEST
What are the primary benefits of using AWS Elastic Load Balancing? (Select TWO.) Automation High availability Regional resilience Elasticity Caching
High availability & Elasticity
You need to connect your company's on-premise network into AWS and would like to establish an AWS managed VPN service. Which of the following configuration items needs to be setup on the Amazon VPC side of the connection? A Network Address Translation device A Customer Gateway A Firewall A Virtual Private Gateway
A Virtual Private Gateway
What is an Edge location? A public endpoint for Amazon S3 A content delivery network (CDN) endpoint for CloudFront A virtual private gateway for VPN A VPC peering connection endpoint
A content delivery network (CDN) endpoint for CloudFront
A developer needs a way to automatically provision a collection of AWS resources. Which AWS service is primarily used for deploying infrastructure as code? Jenkins AWS CloudFormation AWS CodeDeploy AWS Elastic Beanstalk
AWS CloudFormation
Which service can be used to help you to migrate databases to AWS quickly and securely? AWS DataSync AWS Database Migration Service (DMS) AWS Server Migration Service (SMS) AWS Key Management Service (KMS)
AWS Database Migration Service (DMS)
A company needs a consistent and dedicated connection between AWS resources and an on-premise system. Which AWS service can fulfil this requirement? AWS Direct Connect AWS Managed VPN Amazon Connect AWS DataSync
AWS Direct Connect
A company plans to create a hybrid cloud architecture. What technology will allow them to create a hybrid cloud? Elastic Network Interface AWS Direct Connect Internet Gateway VPC Peering
AWS Direct Connect
An organization has an on-premises cloud and accesses their AWS Cloud over the Internet. How can they create a private hybrid cloud connection that avoids the internet? AWS Managed VPN AWS VPN CloudHub AWS VPC Endpoint AWS Direct Connect
AWS Direct Connect
How can a company connect from their on-premises network to VPCs in multiple regions using private connections? Inter-Region VPC Peering AWS Direct Connect Gateway AWS Managed VPN Amazon CloudFront
AWS Direct Connect Gateway
A company is deploying a new web application in a single AWS Region that will be used by users globally. Which AWS services will assist with lowering latency and improving transfer speeds for the global users? (Select TWO.) AWS Direct Connect AWS Snowcone AWS Global Accelerator Amazon CloudFront AWS Transfer Gateway
AWS Global Accelerator & Amazon CloudFront
Which AWS services can be used to connect the AWS Cloud and on-premises resources? (Select TWO.) AWS Managed VPN Amazon Connect Amazon CloudHSM AWS Direct Connect AWS Managed Services
AWS Managed VPN & AWS Direct Connect
A company is deploying an application on Amazon EC2 that requires low-latency access to application components in an on-premises data center. Which AWS service or resource can the company use to extend their existing VPC to the on-premises data center? Amazon Connect AWS Outposts Amazon Workspaces AWS Direct Connect
AWS Outposts
What are two ways of connecting to an Amazon VPC from an on-premise data center? (Select TWO.) AWS VPN CloudHub Internet Gateway AWS Direct Connect VPC Router VPC Peering
AWS VPN CloudHub & AWS Direct Connect
What can you use to quickly connect your office securely to your Amazon VPC? Direct Connect Internet Gateway AWS managed VPN Route Table
AWS managed VPN
A company plans to deploy a global commercial application on Amazon EC2 instances. The deployment solution should be designed with the highest redundancy and fault tolerance. Based on this situation, how should the EC2 instances be deployed? Across multiple Availability Zones in one AWS Region In a single Availability Zone in two AWS Regions In a single Availability Zone in one AWS Region Across multiple Availability Zones in two AWS Regions
Across multiple Availability Zones in two AWS Regions
Which AWS service does API Gateway integrate with to enable users from around the world to achieve the lowest possible latency for API requests and responses? Amazon S3 Transfer Acceleration AWS Direct Connect AWS Lambda Amazon CloudFront
Amazon CloudFront
Which service can be used to improve performance for users around the world? Amazon Connect Amazon ElastiCache AWS LightSail Amazon CloudFront
Amazon CloudFront
Which AWS services are associated with Edge Locations? (Select TWO.) Amazon EBS AWS Direct Connect Amazon CloudFront AWS Config AWS Shield
Amazon CloudFront & AWS Shield
Which service is used introduce fault tolerance into an application architecture? Amazon CloudFront Amazon ElastiCache Amazon Elastic Load Balancing Amazon DynamoDB
Amazon Elastic Load Balancing
Which service supports the resolution of public domain names to IP addresses or AWS resources? Amazon Route 53 Amazon CloudFront Amazon SNS Hosted Zones
Amazon Route 53
Which statement best describes Amazon Route 53? Amazon Route 53 enables hybrid cloud models by extending an organization's on-premise networks into the AWS cloud Amazon Route 53 is a service for distributing incoming connections between a fleet of registered EC2 instances Amazon Route 53 is a highly available and scalable Domain Name System (DNS) service Amazon Route 53 is a service that enables routing within VPCs in an account
Amazon Route 53 is a highly available and scalable Domain Name System (DNS) service
A cloud practitioner needs to decrease application latency and increase performance for globally distributed users. Which services can assist? (Select TWO.) Amazon ECS Amazon S3 Amazon ElastiCache Amazon AppStream 2.0 Amazon CloudFront
Amazon S3 & Amazon CloudFront
Which AWS construct provides you with your own dedicated virtual network in the cloud? Amazon EC2 Amazon VPC Amazon Workspaces Amazon IAM
Amazon VPC
You are evaluating AWS services that can assist with creating scalable application environments. Which of the statements below best describes the Elastic Load Balancer service? Automatically distributes incoming application traffic across multiple targets, such as Amazon EC2 instances, containers, and IP addresses Helps you ensure that you have the correct number of Amazon EC2 instances available to handle the load for your application A network service that provides an alternative to using the Internet to connect customers' on-premise sites to AWS A highly available and scalable Domain Name System (DNS) service
Automatically distributes incoming application traffic across multiple targets, such as Amazon EC2 instances, containers, and IP addresse
An Elastic IP Address can be remapped between EC2 instances across which boundaries? Availability Zones Edge Locations DB Subnets Regions
Availability Zones
An Amazon Virtual Private Cloud (VPC) can include multiple: Availability Zones. Internet gateways. Edge locations. AWS Regions.
Availability Zones.
What is one method of protecting against distributed denial of service (DDoS) attacks in the AWS Cloud? Configure a firewall in front of resources. Use Amazon CloudWatch monitoring. Enable AWS CloudTrail logging. Monitor the Service Health Dashboard.
Configure a firewall in front of resources.
What benefits are provided by Amazon CloudFront? (Select TWO.) Content is cached at Edge Locations for fast distribution to customers Built-in Distributed Denial of Service (DDoS) attack protection Provides a worldwide distributed DNS service Used to enable private subnet instances to access the Internet Allows you to register domain names
Content is cached at Edge Locations for fast distribution to customers & Built-in Distributed Denial of Service (DDoS) attack protection
How can a company facilitate the sharing of data over private connections between two accounts they own within a region? Create a VPC peering connection Create a subnet peering connection Configure matching CIDR address ranges Create an internal ELB
Create a VPC peering connection
To connect an on-premises network to an Amazon VPC using an Amazon Managed VPN connection, which components are required? (Select TWO.) Direct Connect NAT Instance Customer Gateway Virtual Private Gateway VPC Router
Customer Gateway & Virtual Private Gateway
Which type of connection should be used to connect an on-premises data center with the AWS cloud that is high speed, low latency and does not use the Internet? AWS Managed VPN VPC Endpoints Direct Connect Client VPN
Direct Connect
Which of the following services does Amazon Route 53 provide? (Select TWO.) Domain registration Route tables Auto Scaling Domain Name Service (DNS) Load balancing
Domain registration & Domain Name Service (DNS)
Which of the following descriptions is incorrect in relation to the design of Availability Zones? AZs are physically separated within a typical metropolitan region and are located in lower risk flood plains Each AZ is designed as an independent failure zone Each subnet in a VPC is mapped to all AZs in the region AZ's have direct, low-latency, high throughput and redundant network connections between each other
Each subnet in a VPC is mapped to all AZs in the region
Which AWS network element allows you to assign a static IPv4 address to an EC2 instance? Dynamic IP Static IP Public IP Elastic IP
Elastic IP
When designing a VPC, what is the purpose of an Internet Gateway? Enables Internet communications for instances in public subnets It's used for making VPN connections to a VPC It's a bastion host for inbound management connections Provides Internet access for EC2 instances in private subnets
Enables Internet communications for instances in public subnets
Which of the below are components that can be configured in the VPC section of the AWS management console? (Select TWO.) Endpoints Elastic Load Balancer EBS volumes DNS records Subnet
Endpoints & Subnet
What advantages does deploying Amazon CloudFront provide? (Select TWO.) Improved performance for end users Automated deployment of resources Reduced latency A private network link to the AWS cloud Provides serverless compute services
Improved performance for end users & Reduced latency
Which benefits can an organization achieve by deploying AWS Global Accelerator? (Select TWO.) It increases the durability of data stored on Amazon S3. It caches content around the world to reduce latency. Improves the availability of applications on AWS. Reduces the cost of deploying global services on AWS. Decreased latency to reach applications deployed on AWS.
Improves the availability of applications on AWS. & Decreased latency to reach applications deployed on AWS.
Which of the following statements are correct about the benefits of AWS Direct Connect? (Select TWO.) Quick to implement Increased reliability (predictable performance) Lower cost than a VPN Increased bandwidth (predictable bandwidth) Uses redundant paths across the Internet
Increased reliability (predictable performance) & Increased bandwidth (predictable bandwidth)
What is the scope of an Amazon Virtual Private Cloud (VPC)? It spans all Availability Zones in all regions It spans a single CIDR block It spans all Availability Zones within a region It spans multiple subnets
It spans all Availability Zones within a region
Which type of security control can be used to deny network access from a specific IP address? AWS WAF AWS Shield Security Group Network ACL
Network ACL
Which AWS security service provides a firewall at the subnet level within a VPC? Bucket Policy Security Group Network Access Control List IAM Policy
Network Access Control List
Which type of Elastic Load Balancer operates at the TCP connection level? Application Load Balancer (ALB) Network Load Balancer (NLB) Classic Load Balancer (CLB) Amazon Route 53 Load Balancer
Network Load Balancer (NLB)
Which of the following best describes an Availability Zone in the AWS Cloud? A subnet for deploying resources into One or more edge locations based around the world A completely isolated geographic location One or more physical data centers
One or more physical data centers
A company has an application with users in both Australia and Germany. All the company infrastructure is currently provisioned in the Europe (Frankfurt) Region, and Australian users are experiencing high latency. What should the company do to reduce latency? Implement AWS Direct Connect for users in Australia Provision resources in the Asia Pacific (Sydney) Region in Australia Use AWS Transit Gateway to quickly route users from Australia to the application Launch additional Amazon EC2 instances in Frankfurt to handle the demand
Provision resources in the Asia Pacific (Sydney) Region in Australia
What is the scope of a VPC within a region? At least 2 subnets per region At least 2 data centers per region Spans all Availability Zones globally Spans all Availability Zones within the region
Spans all Availability Zones within the region
At what level is a Network ACL applied? Instance level Subnet level Region level Availability Zone level
Subnet level
Which items can be configured from within the VPC management console? (Select TWO.) Auto Scaling Subnets Regions Security Groups Load Balancing
Subnets & Security Groups
Which statement below is incorrect in relation to Security Groups? They evaluate all rules before making a decision They are stateless They support allow rules only They operate at the instance level
They are stateless
What are Edge locations used for? They are used by CloudFront for caching content They are used for terminating VPN connections They are the public-facing APIs for Amazon S3 They are used by regions for inter-region connectivity
They are used by CloudFront for caching content
Which statement below is incorrect in relation to Network ACLs? They operate at the Availability Zone level They support allow and deny rules They process rules in order They are stateless
They operate at the Availability Zone level
In addition to DNS services, what other services does Amazon Route 53 provide? (Select TWO.) DHCP Caching Traffic flow Domain registration IP Routing
Traffic flow & Domain registration
What is the best way for an organization to transfer hundreds of terabytes of data from their on-premise data center into Amazon S3 with limited bandwidth available? Use Amazon CloudFront Use AWS Snowball Apply compression before uploading Use S3 Transfer Acceleration
Use AWS Snowball
How can an online education company ensure their video courses play with minimal latency for their users around the world? Use Amazon EBS Cross Region Replication to get the content close to the users Use Amazon CloudFront to get the content closer to users Use Amazon S3 Transfer Acceleration to speed up downloads Use Amazon Aurora Global Database
Use Amazon CloudFront to get the content closer to users
What is the most efficient way to establish network connectivity from on-premises to multiple VPCs in different AWS Regions? Use an AWS Transit Gateway Use AWS Client VPN Use AWS VPN Use AWS Direct Connect
Use an AWS Transit Gateway
How can you configure Amazon Route 53 to monitor the health and performance of your application? Using DNS lookups Using Route 53 health checks Using CloudWatch Using the Route 53 API
Using Route 53 health checks
Which AWS service should a Cloud Practitioner use to establish a secure network connection between an on-premises network and AWS? AWS Web Application Firewall (WAF) Amazon Virtual Private Cloud (VPC) AWS Mobile Hub Virtual Private Network
Virtual Private Network
What is the relationship between subnets and availability zones? Subnets span across multiple availability zones You can create one subnet per availability zone You can create one or more subnets within each availability zone Subnets contain one or more availability zones
You can create one or more subnets within each availability zone