ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 288 - SAP-C02 discussion

Report
Export

A company wants to send data from its on-premises systems to Amazon S3 buckets. The company created the S3 buckets in three different accounts. The company must send the data privately without the data traveling across the internet The company has no existing dedicated connectivity to AWS Which combination of steps should a solutions architect take to meet these requirements? (Select TWO.)

A.
Establish a networking account in the AWS Cloud Create a private VPC in the networking account.Set up an AWS Direct Connect connection with a private VIF between the on-premises environment and the private VPC.
Answers
A.
Establish a networking account in the AWS Cloud Create a private VPC in the networking account.Set up an AWS Direct Connect connection with a private VIF between the on-premises environment and the private VPC.
B.
Establish a networking account in the AWS Cloud Create a private VPC in the networking account.Set up an AWS Direct Connect connection with a public VlF between the on-premises environment and the private VPC.
Answers
B.
Establish a networking account in the AWS Cloud Create a private VPC in the networking account.Set up an AWS Direct Connect connection with a public VlF between the on-premises environment and the private VPC.
C.
Create an Amazon S3 interface endpoint in the networking account.
Answers
C.
Create an Amazon S3 interface endpoint in the networking account.
D.
Create an Amazon S3 gateway endpoint in the networking account.
Answers
D.
Create an Amazon S3 gateway endpoint in the networking account.
E.
Establish a networking account in the AWS Cloud Create a private VPC in the networking account.Peer VPCs from the accounts that host the S3 buckets with the VPC in the network account.
Answers
E.
Establish a networking account in the AWS Cloud Create a private VPC in the networking account.Peer VPCs from the accounts that host the S3 buckets with the VPC in the network account.
Suggested answer: A, C

Explanation:

https://docs.aws.amazon.com/AmazonS3/latest/userguide/privatelink-interfaceendpoints.html#types-of-vpc-endpoints-for-s3

https://aws.amazon.com/premiumsupport/knowledge-center/s3-bucket-access-direct-connect/

Use a private IP address over Direct Connect (with an interface VPC endpoint) To access Amazon S3 using a private IP address over Direct Connect, perform the following steps:

...

3. Create a private virtual interface for your connection.

...

5. Create an interface VPC endpoint for Amazon S3 in a VPC that is associated with the virtual private gateway. The VGW must connect to a Direct Connect private virtual interface. This interface VPC endpoint resolves to a private IP address even if you enable a VPC endpoint for S3.

asked 16/09/2024
FELIPE VILLAGOMEZ CARDENAS VILLAGOMEZ
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first