1.You are going to design an application which should run in a virtual network closely resembles a traditional network that you'd operate in your own data center, with the benefits of using the scalable infrastructure of AWS. Which AWS feature allows you to define the virtual network?
b) VPC
c) IGW
d) Bastion Host
---------------------------------------------------------------------------------------------------------------------------
2.You have a EC2 instance which should be connected to the internet. You have created a VPC with private and public subnets. What is the best strategy to put this EC2 instance?
a) Use public subnet for the EC2 instance
b) Use private subnet for the EC2 instance because it is more secure
c) Use Private subnet with Bastion host
d) Use Private subnet with Network Gateway
---------------------------------------------------------------------------------------------------------------------------
3. A VPC spans all the Availability Zones in the region.True or False
a) True
b) False
---------------------------------------------------------------------------------------------------------------------------
4. A Subnet spans many Availability Zones in the region. True or False?
a) True
b) False
---------------------------------------------------------------------------------------------------------------------------
5. If a subnet's traffic is routed to an internet gateway, the subnet is known as?
a) Public Subnet
b) Private Subnet
c) Default Subnet
d) Non Default Subnet
---------------------------------------------------------------------------------------------------------------------------
6. If a subnet doesn't have a route to the internet gateway, but has its traffic routed to a virtual private gateway for a Site-to-Site VPN connection, the subnet is known as?
a) VPN-only-subnet
b) VPC-Only-subnet
c) VGW-only-subnet
d) Private subnet
---------------------------------------------------------------------------------------------------------------------------
7. What is the maximum number of IP addresses allowed in a VPC with IPv4 CIDR block?
a) 65536
b) 32676
c) 256
d) 1024
---------------------------------------------------------------------------------------------------------------------------
8. Select the VPC with maximum number of IP addresses.
a) /16
b) /20
c)/28
d) /24
--------------------------------------------------------------------------------------------------------------------------
9. Suppose you have subnet with CIDR block 10.0.0.0/24. How many IP addresses are available for your application to use?
a) 256
b) 255
c) 254
d) 251
--------------------------------------------------------------------------------------------------------------------------
10. Which of the following is true,
a) You can create a VPC with multiple IPV4 CIDR blocks
b) You can associate a secondary CIDR block to a VPC with one CIDR block
c) A VPC can never have multiple CIDR blocks
d) A VPC can have a maximum of 2 CIDR blocks
--------------------------------------------------------------------------------------------------------------------------
11. You have a subnet which should reach computers in the corporate network over the Site-to-Site VPN connection. What routing table entry should be there for your subnet?
a) Route to IGW
b) Route to NAT instance
c) Route to NAT Gateway
d) Route to VGW
--------------------------------------------------------------------------------------------------------------------------
12. You need to capture the traffic that flows to and from the network interfaces in your VPC or subnet. Then which log mechanism you should be using?
a) VPC Flow logs
b) CloudTrail
c) CloudWatch
d) Splunk
--------------------------------------------------------------------------------------------------------------------------
13. AWS supports Site-to-Site VPN connections over IPv6.
a) True
b) False