Month End Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Note! Following ANS-C00 Exam is Retired now. Please select the alternative replacement for your Exam Certification. The new exam code is ANS-C01

Verified By IT Certified Experts

CertsTopics.com Certified Safe Files

Up-To-Date Exam Study Material

99.5% High Success Pass Rate

100% Accurate Answers

Instant Downloads

Exam Questions And Answers PDF

Try Demo Before You Buy

Certification Exams with Helpful Questions And Answers

AWS Certified Advanced Networking-Specialty Questions and Answers

Question 1

A company is delivering web content from an Amazon EC2 instance in a public subnet with address 2001 db8 1 100 1 Users report they are unable to access the web content The VPC Flow Logs tor the subnet contain the following entries.

Which action will restore network reachability to the EC2 instance1?

Options:

A.

Update the security group associated with eni-0596e500l23456789 to permit inbound traffic

B.

Update the security group associated with eni-059€«500i234 56~89 to permit outbound traffic

C.

Update the network ACL associated with the subnet to permit inbound traffic

D.

Update the network ACL associated with the subnet to permit outbound traffic

Buy Now
Question 2

An organization has ordered a new AWS Direct Connect connection. The AWS Management Console reports that the connection is available and BGP status is up. However, the networking team is not able to reach instances in the VPC using ping on the organization's private IP address

What could cause this connectivity issue? (Choose two.)

Options:

A.

The VGW is not advertising the correct CIDR range back on-premises.

B.

The instance security group does not allow ICMP traffic.

C.

A public virtual interface must be configured for Amazon EC2 connectivity.

D.

The on-premises router is not advertising the correct CIDR range to AWS.

E.

There is a misconfiguration of the bi-directional forwarding detection.

Question 3

A customer is using ABC Telecom as a network provider. The customer has 10 different offices connected to ABC Telecom’s MPLS backbone. The customer is setting up an AWS Direct Connect connection to AWS and has provided the LOA-CFA to ABC Telecom. ABC Telecom has terminated the Direct Connect circuit into their MPLS backbone. To uniquely identify the customer’s traffic over the MPLS backbone, the customer must encapsulate all traffic with VLAN tag 100. The customer wants to send traffic to multiple VPCs.

Which two steps should be taken to meet the customer’s requirement? (Select two.)

Options:

A.

The customer performs Q-in-Q tunneling, with the AWS-required VLAN tag in the inside and VLAN 100 as the outside tag.

B.

Create a support ticket with AWS to request the removal of the outer VLAN tag 100 as the traffic reaches AWS routers.

C.

Send the traffic for all VPCs with the same VLAN tag 100 and use BGP to ensure that proper routing takes place to the appropriate VPC.

D.

ABC Telecom removes the other tag before sending the packet to AWS.

E.

ABC Telecom creates a support ticket with AWS to exchange MPLS labels and include the AWS port as part of their MPLS network.