exam questions

Exam AWS Certified Solutions Architect - Associate SAA-C02 All Questions

View all questions & answers for the AWS Certified Solutions Architect - Associate SAA-C02 exam

Exam AWS Certified Solutions Architect - Associate SAA-C02 topic 1 question 446 discussion

A company has two VPCs named Management and Production. The Management VPC uses VPNs through a customer gateway to connect to a single device in the data center. The Production VPC uses a virtual private gateway with two attached AWS Direct Connect connections. The Management and Production VPCs both use a single VPC peering connection to allow communication between the applications.
What should a solutions architect do to mitigate any single point of failure in this architecture?

  • A. Add a set of VPNs between the Management and Production VPCs.
  • B. Add a second virtual private gateway and attach it to the Management VPC.
  • C. Add a second set of VPNs to the Management VPC from a second customer gateway device.
  • D. Add a second VPC peering connection between the Management VPC and the Production VPC.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
peterhawk
Highly Voted 3 years, 6 months ago
Selected Answer: C
I think its C. A is out - Regarding the VPC Peering "There is no single point of failure for communication or a bandwidth bottleneck". So there is no need to create a redundancy mechanism when you already have a VPC Peering in place. https://docs.aws.amazon.com/vpc/latest/peering/what-is-vpc-peering.html B is out - "You can attach one virtual private gateway to a VPC at a time." https://docs.aws.amazon.com/vpn/latest/s2svpn/vpn-limits.html D is out - You can only have one VPC Peering per VPC pair. "A VPC peering connection is a one to one relationship between two VPCs." VPChttps://docs.aws.amazon.com/vpc/latest/peering/vpc-peering-basics.html C is correct. "To protect against a loss of connectivity in case your customer gateway device becomes unavailable, you can set up a second Site-to-Site VPN connection to your VPC and virtual private gateway by using a second customer gateway device." https://docs.aws.amazon.com/vpn/latest/s2svpn/vpn-redundant-connection.html
upvoted 53 times
eBooKz
3 years, 1 month ago
Thank you sir. This is how to provide really helpful answers!
upvoted 4 times
...
...
AnuhyaTech
Highly Voted 3 years, 8 months ago
Answer is C
upvoted 44 times
noahsark
3 years, 7 months ago
https://docs.aws.amazon.com/vpn/latest/s2svpn/images/Multiple_Gateways_diagram.png
upvoted 6 times
...
...
queen101
Most Recent 2 years, 10 months ago
CCCCCCCCCCCCCCCCC
upvoted 1 times
...
marklovesaws143
2 years, 10 months ago
Selected Answer: C
CCCCCCCCCCCCCCCC
upvoted 1 times
...
bora4motion
2 years, 10 months ago
I had to make a drawing: - prod to aws you have 2 DXs- OK - MGMT to PROD - PEERING - that's OK to me - MGMT to DataCEnter - single VPN - here is what we have to improve C to me.
upvoted 2 times
...
ziiziii
2 years, 10 months ago
B.... VPN connection needs customer GW and VGW
upvoted 1 times
...
naveenagurjara
2 years, 11 months ago
C... You cannot use VPNs between VPCs in AWS Cloud and VPC Peering itself is highly redundant using AWS infra. So A and D out.
upvoted 1 times
...
seeking_cert
3 years, 3 months ago
My exam was on 02-21-2022 and this eas on it. C is the right answer
upvoted 7 times
...
marszalekm
3 years, 3 months ago
I had exam today as of 16.02.2022 and this was one of the two questions from this 577 set that appeared on my exam. However I encourage you to read them all before yours.
upvoted 3 times
Xavier1964
3 years ago
did you get only 2 question from this 577 set ?
upvoted 1 times
mgari
3 years ago
to use this page you must read english
upvoted 1 times
...
...
...
envest
3 years, 4 months ago
IMO: A is correct because VPC peering has not SPoF, therefore it requires an alternative solution: VPN.
upvoted 1 times
...
downlinkvip
3 years, 5 months ago
Selected Answer: C
C: Add one more Customer Gateway make it is not single point of failure at Customer site.
upvoted 4 times
...
joe2211
3 years, 5 months ago
Selected Answer: C
vote C
upvoted 1 times
...
weilun_tann
3 years, 5 months ago
C. Add a second set of VPNs to the Management VPC from a second customer gateway device. - SPOF refers to the "Management VPC connects to a single device in the data center using VPNs via a customer gateway" - A is wrong. We want to address MANAGEMENT_VPC <---> CUSTOMER_GATEWAY SPOF - B is wrong. A second CUSTOMER GATEWAY should be added - D is wrong. At most 1 VPC peering connection is allowed between 2 VPCs (https://docs.aws.amazon.com/vpc/latest/peering/vpc-peering-basics.html)
upvoted 6 times
...
keeplearning_rahul
3 years, 5 months ago
Selected Answer: C
C is correct
upvoted 1 times
...
Munna_Bhaiya
3 years, 5 months ago
Selected Answer: C
C is correct as there is a single device which might fail.
upvoted 1 times
...
ruturajjena
3 years, 5 months ago
Selected Answer: C
C- As the Management VPC is connected to only one device which might fail anytime
upvoted 1 times
...
anas23
3 years, 6 months ago
"You cannot have more than one VPC peering connection between the same two VPCs at the same time" So D is out. source: https://docs.aws.amazon.com/vpc/latest/peering/vpc-peering-basics.html
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...