exam questions

Exam ANS-C00 All Questions

View all questions & answers for the ANS-C00 exam

Exam ANS-C00 topic 1 question 107 discussion

Exam question from Amazon's ANS-C00
Question #: 107
Topic #: 1
[All ANS-C00 Questions]

A company has two redundant AWS Direct Connect connections to a VPC. The VPC is configured using BGP metrics so that one Direct Connect connection is used as the primary traffic path. The company wants the primary Direct Connect connection to fail to the secondary in less than one second.
What should be done to meet this requirement?

  • A. Configure BGP on the company's router with a keep-alive to 300 ms and the BGP hold timer to 900 ms.
  • B. Enable Bidirectional Forwarding Detection (BFD) on the company's router with a detection minimum interval of 300 ms and a BFD liveness detection multiplier of 3.
  • C. Enable Dead Peer Detection (DPD) on the company's router with a detection minimum interval of 300 ms and a DPD liveliness detection multiplier of 3.
  • D. Enable Bidirectional Forwarding Detection (BFD) echo mode on the company's router and disable sending the Internet Control Message Protocol (ICMP) IP packet requests.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️
Reference:
https://aws.amazon.com/directconnect/faqs/

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
baha1983
Highly Voted 3 years, 8 months ago
B for sure
upvoted 10 times
...
sapien45
Most Recent 3 years, 2 months ago
Asynchronous BFD is automatically enabled for each AWS Direct Connect virtual interface, but will not take effect until it's configured on your router. AWS has set the BFD liveness detection minimum interval to 300, and the BFD liveness detection multiplier to 3. B
upvoted 1 times
...
ChauPhan
3 years, 7 months ago
Yes, B is the answer
upvoted 2 times
...
sensor
3 years, 7 months ago
Would rather go for C: https://docs.aws.amazon.com/vpn/latest/s2svpn/your-cgw.html BFD is used for failure detection/analyzing
upvoted 1 times
certificatores
3 years, 7 months ago
dead peer detection has no relation with the failover. as clearly mentioned in the link you provided Dead Peer Detection enables the VPN devices to rapidly identify when a network condition prevents delivery of packets across the internet. so the answer is B
upvoted 1 times
...
ChauPhan
3 years, 7 months ago
Dead Peer Detection (DPD) is a method that allows detection of unreachable Internet Key Exchange (IKE) peers in VPN IPsec. Not relevant to BGP
upvoted 4 times
...
Kentik
3 years, 7 months ago
yeah Dead Peer Detection is for IPSEC Tunnels
upvoted 1 times
...
...
SilverT
3 years, 8 months ago
Ans B https://aws.amazon.com/premiumsupport/knowledge-center/enable-bfd-direct-connect/
upvoted 4 times
...
kvirk
3 years, 8 months ago
Ans is B
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...