A company wants to analyze TCP internet traffic. The traffic originates from Amazon EC2 instances in
the companys VPC. The EC2 instances initiate connections through a NAT gateway.
The company wants to capture data about the traffic including source and destination IP addresses
ports, and the first 8 bytes of the TCP segments of the traffic. The company needs to collect, store,
and analyze all the required data points.
Which solution will meet these requirements?
A company has configured an AWS Cloud WAN core network with edge locations in the us-east-1
Region and the us-west-1 Region. Each edge location has two segments: development and staging.
The segments use the default core network policy.
The company has attached VPCs to the core network. A development VPC is attached to the
development segment in us-east-1 and is configured to use the 10.0.0.0 CIDR block. A staging VPC
is attached to the staging segment in us-west-1 and is configured to use the 10.5.0.0 CIDR block. The company has updated the route tables for both VPCs with a route that directs any traffic for
0.0.0.0/0 to the core network.
The companys network team needs to establish communication between the two VPCs by using the
AWS Cloud WAN core network. The network team is not receiving a response during tests of
communication between the VPCs. The network team has verified that security groups and network
ACLs are not blocking the traffic.
What should the network team do to establish this communication?
A company has an on-premises data center in the United States. The data center is connected to AWS
by an AWS Direct Connect connection. The data center has a private VIF that is connected to a Direct
Connect gateway.
Recently, the company opened a new data center in Europe and established a new Direct Connect
connection between the Europe data center and AWS. A new private VIF connects to the existing
Direct Connect gateway.
The company wants to use Direct Connect SiteLink to set up a private network between the data
center in the United States and the data center in Europe.
Which solution will meet these requirements in the MOST operationally efficient manner?
A company wants to implement a distributed architecture on AWS that uses a Gateway Load
Balancer (GWLB) and GWLB endpoints.
The company has chosen a hub-and-spoke model. The model includes a GWLB and virtual appliances
that are deployed into a centralized appliance VPC and GWLB endpoints. The model also includes
internet gateways that are configured in spoke VPCs.
Which sequence of traffic flow to the internet from the spoke VPC is correct?
A company deployed an application in two AWS Regions in one AWS account. The company has one
VPC in each Region. The VPCs use non-overlapping private CIDR ranges.
The company needs to connect both VPCs to a single on-premises data center to test the application.
The application requires up to 800 Mbps of throughput. A network engineer needs to establish
connectivity between the VPCs and the on-premises data center.
Which solution will meet this requirement with the LEAST operational overhead?