exam questions

Exam AWS-SysOps All Questions

View all questions & answers for the AWS-SysOps exam

Exam AWS-SysOps topic 1 question 755 discussion

Exam question from Amazon's AWS-SysOps
Question #: 755
Topic #: 1
[All AWS-SysOps Questions]

A SysOps Administrator is responsible for maintaining an Amazon EC2 instance that acts as a bastion host. The Administrator can successfully connect to the instance using SSH, but attempts to ping the instance result in a timeout.
What is one reason for the issue?

  • A. The instance does not have an Elastic IP address
  • B. The instance has a security group that does not allow Internet Control Message Protocol (ICMP) traffic
  • C. The instance is not set up in a VPC using AWS Direct Connect
  • D. The instance is running in a peered VPC
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
nicat
Highly Voted 2 years, 6 months ago
B. The instance has a security group that does not allow Internet Control Message Protocol (ICMP) traffic
upvoted 19 times
AWSvad
2 years, 6 months ago
Thanks for your feedback on the new questions. Please keep it coming.
upvoted 1 times
...
...
albert_kuo
Most Recent 9 months, 3 weeks ago
Selected Answer: B
By default, Amazon EC2 instances have security groups that allow SSH (port 22) incoming traffic but do not allow ICMP traffic, which is used for pinging. If the security group associated with the instance is not configured to allow ICMP traffic, attempts to ping the instance will result in a timeout.
upvoted 1 times
...
gulu73
1 year, 2 months ago
Selected Answer: B
B is correct
upvoted 1 times
...
albertlau
2 years, 6 months ago
B is the correct answer
upvoted 1 times
...
TroyMcLure
2 years, 6 months ago
Correct Answer: B Since SSH is working and ICMP is not, it's a filtering related issue (security group).
upvoted 1 times
...
RicardoD
2 years, 6 months ago
B is the answer Whenever you have time out problems, first think on security group
upvoted 1 times
...
abhishek_m_86
2 years, 6 months ago
B. The instance has a security group that does not allow Internet Control Message Protocol (ICMP) traffic
upvoted 2 times
...
jackdryan
2 years, 6 months ago
I'll go with B
upvoted 2 times
...
MFDOOM
2 years, 6 months ago
B. The instance has a security group that does not allow Internet Control Message Protocol (ICMP) traffic
upvoted 2 times
...
waterzhong
2 years, 6 months ago
Also vote for B
upvoted 3 times
...
teosinh
2 years, 6 months ago
B is correctly.
upvoted 1 times
...
Golddust
2 years, 6 months ago
Also vote for B
upvoted 1 times
...
AWS_Noob
2 years, 6 months ago
B - ICMP traffic has to be allowed. I've done this many times in my day job , so it is tried and tested
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago