ANS-C00 Exam Question 86

You are architecting an HPC solution in AWS. The system consists of a cluster of EC2 instances that require low-latency communications between them.
Which method should you use to set up a cluster to meet these requirements?
  • ANS-C00 Exam Question 87

    In AWS Direct Connect, to provide for failover, AWS recommends that you request and configure two dedicated connections to AWS.
    These connections can terminate on one or two routers in your network. You can do this while
    __________________ with AWS Direct Connect step.
  • ANS-C00 Exam Question 88

    An organization processes consumer information submitted through its website. The organization's security policy requires that personally identifiable information (PII) elements are specifically encrypted at all times and as soon as feasible when received. The front-end Amazon EC2 instances should not have access to decrypted PII. A single service within the production VPC must decrypt the PII by leveraging an iAM role.
    Which combination of services will support these requirement? (Select two.)
  • ANS-C00 Exam Question 89

    A multinational organization has applications deployed in three different AWS regions. These applications must securely communicate with each other by VPN. According to the organization's security team, the VPN must meet the following requirements:
    AES 128-bit encryption
    SHA-1 hashing
    User access via SSL VPN
    PFS using DH Group 2
    Ability to maintain/rotate keys and passwords
    Certificate-based authentication
    Which solution should you recommend so that the organization meets the requirements?
  • ANS-C00 Exam Question 90

    A company is about to migrate an application from its on-premises data center to AWS. As part of the planning process, the following requirements involving DNS have been identified.
    On-premises systems must be able to resolve the entries in an Amazon Route 53 private hosted zone.
    Amazon EC2 instances running in the organization's VPC must be able to resolve the DNS names of on-premises systems The organization's VPC uses the CIDR block 172.16.0.0/16.
    Assuming that there is no DNS namespace overlap, how can these requirements be met?