exam questions

Exam ANS-C00 All Questions

View all questions & answers for the ANS-C00 exam

Exam ANS-C00 topic 1 question 59 discussion

Exam question from Amazon's ANS-C00
Question #: 59
Topic #: 1
[All ANS-C00 Questions]

Your company operates a single AWS account. A common services VPC is deployed to provide shared services, such as network scanning and compliance tools.
Each AWS workload uses its own VPC, and each VPC must peer with the common services VPC. You must choose the most efficient and cost effective approach.
Which approach should be used to automate the required VPC peering?

  • A. AWS CloudTrail integration with Amazon CloudWatch Logs to trigger a Lambda function.
  • B. An OpsWorks Chef recipe to execute a command-line peering request.
  • C. Cfn-init with AWS CloudFormation to execute a command-line peering request.
  • D. An AWS CloudFormation template that includes a peering request.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
secops
Highly Voted 3 years, 8 months ago
Yes, The correct answer is D.
upvoted 18 times
...
PorkChop1999
Most Recent 1 year, 1 month ago
Selected Answer: D
it is obviously cloud formation so either c or d, but c refers to cfn-init which is part of EC2 instance provisioning and not vpc provisioning. So obviously it is D.
upvoted 1 times
...
JohnnyBG
3 years, 4 months ago
Selected Answer: D
Obviously
upvoted 2 times
...
jason2009
3 years, 6 months ago
CF of course have the capability to initiate the peering request. But in the question it says each workload has its own VPC. To use CF it is required that each and every workload is automated through CF. Based on experience, it is very difficult to enforce 100% compliance with this. However if we use Cloud Trail and Lambda, everytime there is a new VPC created, regardless of how, a peering request will be generated. To me A is a far more efficient way to ensure all VPCs created are peered with shared VPC.
upvoted 3 times
mark_232323
3 years, 3 months ago
Yes you are right it's possible but the question indicates "most efficient and cost-effective" and this is trick, as with this option you are going to pay for cloudwatch logs + Lambda, but when using CF it's free of charge "There is no additional charge for using AWS CloudFormation" https://aws.amazon.com/cloudformation/pricing/
upvoted 2 times
...
...
asdf99
3 years, 6 months ago
https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-ec2-vpcpeeringconnection.html... its D
upvoted 2 times
...
Bijukurup
3 years, 7 months ago
my answer is D
upvoted 1 times
...
kvirk
3 years, 7 months ago
D is correct answer.
upvoted 1 times
...
BillyC
3 years, 7 months ago
D its Correct!
upvoted 3 times
...
route53
3 years, 8 months ago
What about D https://cloakable.irdeto.com/2017/10/11/how-to-implement-vpc-peering-between-2-vpcs-in-the-same-aws-account-using-cloudformation/
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago