A Cantrill - ADVANCED VPC Networking Flashcards

1
Q

What does VPC flow logs capture?

A

Captures metadata (does not capture contents).

Includes:
source and destination IP addr
source and destination ports
protocols

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Are VPC flow logs realtime or not ?

A

No, VPC flow logs are NOT realtime.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are gateway endpoints?

A

Gateway endpoints are a type of VPC endpoint which allow access to S3 and DynamoDB without using public addressing. HA, regional.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are interface endpoints?

A

Interface endpoints are used to allow private IP addressing to access public AWS services. NOT HA, AZ specific.

Uses PrivateLink … If you see PrivateLink in exam ==> INTERFACE endpoint

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

How does GW endpoint and interface endpoints differ?

A

GW uses prefix lists/route table, interface uses DNS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is VPC peering?

A

VPC peering is a software defined and logical networking connection between two VPC’s. Can be same or different regions AND accounts.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Does VPC peering support transitive peering?

A

NO. VPC peering does NOT support transitive peering.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Where can VPC flow logs be attached?

A

VPCs, Subnets, ENIs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

To peer 4 VPC’s how many peering connections are required?

A

6 peering connections are required when connecting 4 VPCs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly