exam questions

Exam AWS Certified SysOps Administrator - Associate All Questions

View all questions & answers for the AWS Certified SysOps Administrator - Associate exam

Exam AWS Certified SysOps Administrator - Associate topic 1 question 237 discussion

A SysOps administrator is configuring AWS Client VPN to connect users on a corporate network to AWS resources that are running in a VPC. According to compliance requirements, only traffic that is destined for the VPC can travel across the VPN tunnel.

How should the SysOps administrator configure Client VPN to meet these requirements?

  • A. Associate the Client VPN endpoint with a private subnet that has an internet route through a NAT gateway.
  • B. On the Client VPN endpoint, turn on the split-tunnel option.
  • C. On the Client VPN endpoint, specify DNS server IP addresses.
  • D. Select a private certificate to use as the identity certificate for the VPN client.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Spike2020
Highly Voted 1 year, 9 months ago
Answer B: Split tunnel on client, so traffic destined to resources other than VPN destination will use local internet or intranet. Otherwise everything will go through the VPN tunnel.
upvoted 7 times
...
icecool36
Most Recent 8 months, 4 weeks ago
Selected Answer: B
Why D? Please change
upvoted 1 times
...
Vivec
1 year, 7 months ago
Selected Answer: B
To meet the requirement of allowing only traffic that is destined for the VPC to travel across the VPN tunnel, the SysOps administrator should turn on the split-tunnel option on the Client VPN endpoint. This option allows only the traffic that is destined for the VPC to be routed through the VPN tunnel, while all other traffic continues to use the internet connection that is available on the client device.
upvoted 1 times
...
Agil09
1 year, 8 months ago
Selected Answer: B
BBBBBBB
upvoted 1 times
...
Deeezz
1 year, 9 months ago
Selected Answer: B
https://docs.aws.amazon.com/vpn/latest/clientvpn-admin/cvpn-working-endpoints.html#cvpn-working-endpoint-create
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago