ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 213 - ANS-C00 discussion

Report
Export

A company uses an AWS Site-to-Site VPN to connect its corporate network. The company recently added an AWS Direct Connect connection. A network engineer wants all traffic to use the Direct Connect connection, and for the VPN to be used as backup. However, after the Direct Connect connection was added, traffic continued to pass through the VPN connection. What should the network engineer do to route the traffic through the Direct Connect connection?

A.
Add routes to the VPC route tables that specify the Direct Connect connection.
Answers
A.
Add routes to the VPC route tables that specify the Direct Connect connection.
B.
Set local preference BGP community tags on the on-premises router.
Answers
B.
Set local preference BGP community tags on the on-premises router.
C.
Advertise the same network routes over the Direct Connect connection and VPN connection.
Answers
C.
Advertise the same network routes over the Direct Connect connection and VPN connection.
D.
Ensure the Direct Connect connection AS_PATH is longer than the VPN connection AS_PATH.
Answers
D.
Ensure the Direct Connect connection AS_PATH is longer than the VPN connection AS_PATH.
Suggested answer: C

Explanation:

Explanation:

If you are advertising the same routes toward the AWS VPC, the Direct Connect path is always being preferred, regardless of AS path prepending. Reference: https://aws.amazon.com/premiumsupport/knowledge-center/configure-vpn-backup-dx/

asked 16/09/2024
Franjo Tomurad
27 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first