exam questions

Exam AWS Certified Developer Associate All Questions

View all questions & answers for the AWS Certified Developer Associate exam

Exam AWS Certified Developer Associate topic 1 question 345 discussion

Exam question from Amazon's AWS Certified Developer Associate
Question #: 345
Topic #: 1
[All AWS Certified Developer Associate Questions]

A developer is building a three-tier application with an Application Load Balancer (ALB), Amazon EC2 instances, and Amazon RDS. There is an alias record in Amazon Route 53 that points to the ALB. When the developer tries to access the ALB from a laptop, the request times out.

Which logs should the developer investigate to verify that the request is reaching the AWS network?

  • A. VPC Flow Logs
  • B. Amazon Route 53 logs
  • C. AWS Systems Manager Agent logs
  • D. Amazon CloudWatch agent logs
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
xicomynor
Highly Voted 2 years, 4 months ago
Selected Answer: A
I go with A. Even though we can enable Route53 logs. They will only give information about the domain name resolution. Not necesarily about AWS Network reachability, but VPC Flow Logs will.
upvoted 5 times
...
ccna_imperathor
Most Recent 2 years, 3 months ago
The questions is asking to verify that the request is reaching the AWS network. If you look at the VPC FLog Logs, you will see IP traffic inside your VPC. It could happen that your VPC route table, ALB or IGW is misconfigured, and from VPC FLow Logs perspective, it could happen that you don't see the IP traffic you want inside your VPC, but this traffic could be reaching the AWS network effectively. Because of this, B (Route 53) is the correct option.
upvoted 1 times
...
Phinx
2 years, 3 months ago
Selected Answer: A
A is the way to go. The catch is "AWS network reachability."
upvoted 1 times
captainpike
2 years, 1 month ago
What's AWS Network? AWS including Route 53 any AWS service/resource OR the AWS account network?
upvoted 1 times
...
...
tobeornot
2 years, 4 months ago
VPC Flow Logs would show packet arriving in the VPC where the ALB lives, while Route53 would show a request was made to resolve the domain-name. The two are very different, considering the question says "to verify that the request is reaching the AWS network?" it may lean towards A.
upvoted 2 times
...
k1kavi1
2 years, 5 months ago
Selected Answer: B
Choosing B
upvoted 1 times
...
DrCloud
2 years, 5 months ago
Ans: B https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/routing-to-elb-load-balancer.html To route domain traffic to an ELB load balancer, use Amazon Route 53 to create an alias record that points to your load balancer. An alias record is a Route 53 extension to DNS. https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/query-logs.html You can configure Amazon Route 53 to log information about the public DNS queries that Route 53 receives, such as the following: Domain or subdomain that was requested Date and time of the request DNS record type (such as A or AAAA) Route 53 edge location that responded to the DNS query DNS response code, such as NoError or ServFail Once you configure query logging, Route 53 will send logs to CloudWatch Logs. You use CloudWatch Logs tools to access the query logs.
upvoted 4 times
RyanDDD
2 years, 5 months ago
Shouldn't this be D as logs are in CloudWatch finally?
upvoted 2 times
...
HieuTT
2 years, 4 months ago
reachability aws network ???? A is the answer
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago