ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 184 - SCS-C02 discussion

Report
Export

A company is migrating one of its legacy systems from an on-premises data center to AWS. The application server will run on AWS, but the database must remain in the on-premises data center for compliance reasons. The database is sensitive to network latency. Additionally, the data that travels between the on-premises data center and AWS must have IPsec encryption.

Which combination of AWS solutions will meet these requirements? (Choose two.)

A.
AWS Site-to-Site VPN
Answers
A.
AWS Site-to-Site VPN
B.
AWS Direct Connect
Answers
B.
AWS Direct Connect
C.
AWS VPN CloudHub
Answers
C.
AWS VPN CloudHub
D.
VPC peering
Answers
D.
VPC peering
E.
NAT gateway
Answers
E.
NAT gateway
Suggested answer: A, B

Explanation:

The correct combination of AWS solutions that will meet these requirements is A. AWS Site-to-Site VPN and B. AWS Direct Connect.

A) AWS Site-to-Site VPN is a service that allows you to securely connect your on-premises data center to your AWS VPC over the internet using IPsec encryption. This solution meets the requirement of encrypting the data in transit between the on-premises data center and AWS.

B) AWS Direct Connect is a service that allows you to establish a dedicated network connection between your on-premises data center and your AWS VPC. This solution meets the requirement of reducing network latency between the on-premises data center and AWS.

C) AWS VPN CloudHub is a service that allows you to connect multiple VPN connections from different locations to the same virtual private gateway in your AWS VPC. This solution is not relevant for this scenario, as there is only one on-premises data center involved.

D) VPC peering is a service that allows you to connect two or more VPCs in the same or different regions using private IP addresses. This solution does not meet the requirement of connecting an on-premises data center to AWS, as it only works for VPCs.

E) NAT gateway is a service that allows you to enable internet access for instances in a private subnet in your AWS VPC. This solution does not meet the requirement of connecting an on-premises data center to AWS, as it only works for outbound traffic from your VPC.

asked 16/09/2024
Josie Moha
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first