ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 139 - SAP-C01 discussion

Report
Export

A company is creating a centralized logging service running on Amazon EC2 that will receive and analyze logs from hundreds of AWS accounts. AWS PrivateLink is being used to provide connectivity between the client services and the logging service.

In each AWS account with a client an interface endpoint has been created for the logging service and is available. The logging service running on EC2 instances with a Network Load Balancer (NLB) are deployed in different subnets. The clients are unable to submit logs using the VPC endpoint.

Which combination of steps should a solutions architect take to resolve this issue? (Choose two.)

A.
Check that the NACL is attached to the logging service subnet to allow communications to and from the NLB subnets. Check that the NACL is attached to the NLB subnet to allow communications to and from the logging service subnets running on EC2 instances.
Answers
A.
Check that the NACL is attached to the logging service subnet to allow communications to and from the NLB subnets. Check that the NACL is attached to the NLB subnet to allow communications to and from the logging service subnets running on EC2 instances.
B.
Check that the NACL is attached to the logging service subnets to allow communications to and from the interface endpoint subnets. Check that the NACL is attached to the interface endpoint subnet to allow communications to and from the logging service subnets running on EC2 instances.
Answers
B.
Check that the NACL is attached to the logging service subnets to allow communications to and from the interface endpoint subnets. Check that the NACL is attached to the interface endpoint subnet to allow communications to and from the logging service subnets running on EC2 instances.
C.
Check the security group for the logging service running on the EC2 instances to ensure it allows ingress from the NLB subnets.
Answers
C.
Check the security group for the logging service running on the EC2 instances to ensure it allows ingress from the NLB subnets.
D.
Check the security group for the logging service running on the EC2 instances to ensure it allows ingress from the clients.
Answers
D.
Check the security group for the logging service running on the EC2 instances to ensure it allows ingress from the clients.
E.
Check the security group for the NLB to ensure it allows ingress from the interface endpoint subnets.
Answers
E.
Check the security group for the NLB to ensure it allows ingress from the interface endpoint subnets.
Suggested answer: D, E
asked 16/09/2024
corey shields
27 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first