exam questions

Exam AWS Certified Solutions Architect - Associate SAA-C02 All Questions

View all questions & answers for the AWS Certified Solutions Architect - Associate SAA-C02 exam

Exam AWS Certified Solutions Architect - Associate SAA-C02 topic 1 question 201 discussion

A company is designing a new web service that will run on Amazon EC2 instances behind an Elastic Load Balancer. However, many of the web service clients can only reach IP addresses whitelisted on their firewalls.
What should a solutions architect recommend to meet the clients' needs?

  • A. A Network Load Balancer with an associated Elastic IP address.
  • B. An Application Load Balancer with an associated Elastic IP address
  • C. An A record in an Amazon Route 53 hosted zone pointing to an Elastic IP address
  • D. An EC2 instance with a public IP address running as a proxy in front of the load balancer
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
rahul2k
Highly Voted 3 years, 4 months ago
Selected Answer: A
Refer "https://www.examtopics.com/discussions/amazon/view/67636-exam-aws-certified-solutions-architect-associate-saa-c02/' and https://www.examtopics.com/discussions/amazon/view/29771-exam-aws-certified-solutions-architect-associate-saa-c02/.. same question A is the answer but where are all the comments gone..why same question has different links....
upvoted 10 times
...
osel
Highly Voted 3 years, 3 months ago
Selected Answer: A
Option C having creating an A-record in Route53 is part of the overall steps to return a DNS resolved EIP (static public IP address) to the clients. But the ELB (NLB particularly) must resume a static public IP address 1st. Hence, option A is the ultimate correct answer.
upvoted 6 times
...
BECAUSE
Most Recent 1 year, 11 months ago
Selected Answer: A
A is the answer
upvoted 1 times
...
sassy2023
2 years, 4 months ago
Selected Answer: A
A - correct (Static ip can thereafter be used for client whitelisting) Using a Network Load Balancer instead of a Classic Load Balancer has the following benefits: Support for static IP addresses for the load balancer. https://docs.aws.amazon.com/elasticloadbalancing/latest/network/introduction.html
upvoted 2 times
...
gcmrjbr
2 years, 6 months ago
I think this has to do with "Preserve source IP address", so I stick with the letter A.
upvoted 1 times
...
Curious76
2 years, 8 months ago
Selected Answer: A
IP addresses whitelisted on their firewalls = network load balancer
upvoted 2 times
...
bora4motion
2 years, 9 months ago
this question, the setup around the question does not make any sense to me...why would you have something like that in real life.
upvoted 1 times
...
mgari
3 years, 1 month ago
Selected Answer: A
UDP TCP (layer 4)=NLB (network load balancer)
upvoted 1 times
Ifebobo3
2 years, 10 months ago
Can you explain this please? Why NLB?
upvoted 1 times
...
allanm
2 years, 9 months ago
While you are right, there is no information on the question that states it should be TCP/UDP and hence NLB.
upvoted 1 times
...
...
examJack
3 years, 1 month ago
Selected Answer: A
Network Load Balancers, the load balancer node that receives the connection uses the following process: 1.Selects a target from the target group for the default rule using a flow hash algorithm. It bases the algorithm on: * The protocol * The source IP address and source port * The destination IP address and destination port * The TCP sequence number 2.Routes each individual TCP connection to a single target for the life of the connection. The TCP connections from a client have different source ports and sequence numbers, and can be routed to different targets.
upvoted 1 times
...
awsnoobster
3 years, 3 months ago
A should be correct as NLB is for IP.
upvoted 4 times
...
FF11
3 years, 3 months ago
Selected Answer: C
C seems correct.
upvoted 3 times
...
drakosh
3 years, 4 months ago
C - Route53 DNS -> ELB
upvoted 2 times
...
Gmasta
3 years, 4 months ago
C for sure, most of modern firewalls should be able to use fqdn within ACL, so an A record pointing to LB should meet their requirement
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago