Exams > Amazon > ANS-C00: AWS Certified Advanced Networking - Specialty
ANS-C00: AWS Certified Advanced Networking - Specialty
Page 14 out of 37 pages Questions 131-140 out of 367 questions
Question#131

What must be added to your web server configuration to view the true requesting IP address?

  • A. X-Actual-IP
  • B. X-Forwarded-Proto
  • C. X-Amzn-Trace-ID
  • D. X-Forwarded-For
Discover Answer Hide Answer

D
X-Forwarded-For. X-Forwarded-Proto is to see the protocol, X-Actual-IP doesn't exist and X-Amzn-Trace-ID is for Amazon's unique identifier.

Question#132

What are 2 possible ALIAS records? (Choose two.)

  • A. DynamoDB
  • B. Elastic Beanstalk
  • C. CloudFront
  • D. EC2 Instance
Discover Answer Hide Answer

BC
You cannot create an ALIAS record that points to an EC2 instance or DynamoDB.

Question#133

What are two routing methods used by Route 53? (Choose two.)

  • A. RIP
  • B. Failover
  • C. Latency
  • D. AS_PATH
Discover Answer Hide Answer

BC
RIP is used for network routing and AS_PATH is used for BGP path manipulation.

Question#134

Which is not a valid Route 53 record?

  • A. SPF
  • B. NAPTR
  • C. AAAA
  • D. BFD
Discover Answer Hide Answer

D
BFD stands for Bi-directional Forwarding Detection and has nothing to do with Route 53.

Question#135

What is the minimum number of subnets for an RDS subnet group?

  • A. 3
  • B. 4
  • C. 1
  • D. 2
Discover Answer Hide Answer

D
This allows for high availability and failover in case an RDS instance goes down.

Question#136

What is the DNS server address for a VPC (10.111.0.0/16) with a subnet of 10.111.4.0/24?

  • A. 10.111.0.2
  • B. 10.111.4.2
  • C. 10.111.1.2
  • D. 10.111.4.1
Discover Answer Hide Answer

A
The DNS server is the base VPC CIDR + 2.

Question#137

Which statement about VPC endpoints is incorrect?

  • A. Endpoints are transitive for Direct Connect connections.
  • B. Endpoints cannot be extended out of a VPC.
  • C. Endpoints cannot be tagged.
  • D. An S3 endpoint allows Amazon AMIs to install some software.
Discover Answer Hide Answer

A
Endpoints are not transitive for Direct Connect connections or any other connections. To access S3 resources through an endpoint from outside of a VPC, an EC2 proxy must be used.

Question#138

Which two methods can be used to ensure items are distributed only to the correct parties? (Choose two.)

  • A. Signed URLs
  • B. Signed cookies
  • C. Signed biscuits
  • D. Signed SSLs
Discover Answer Hide Answer

AB
Signed cookies and signed URLs are used to ensure only intended parties can access CloudFront resources.

Question#139

What is NOT a benefit of CloudFront?

  • A. Helps ease the strain on your web servers
  • B. Distributes traffic evenly to EC2 instances
  • C. Speeds up distribution of RTMP content
  • D. Speeds up distribution of static and dynamic web content
Discover Answer Hide Answer

B
Elastic Load balancers distribute traffic to EC2 instances.

Question#140

What two items are required for all AWS VPNs? (Choose two.)

  • A. Virtual Private Gateway
  • B. ASN
  • C. A hardware router
  • D. Customer Gateway
Discover Answer Hide Answer

AD
An ASN is only required for dynamic VPNs and hardware routers are not required.

chevron rightPrevious Nextchevron right