Route53 3 Flashcards

1
Q

VPC DNS

What IP addresses are reserved for DNS in a VPC?

A

VPC “.2” is DNS, also reserved “.2” in every subnet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

VPC DNS

What is the thing running on “.2” called?

A

Route53 Resolver

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

VPC DNS

Can you access a Route53 Resolver from a DX?

A

No, R53R only from inside a VPC because it’s on “VPC +2” IP addr

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

VPC DNS

Can you access a Route53 Resolver across a VPN?

A

No, R53R only from inside a VPC because it’s on “VPC +2” IP addr

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

VPC DNS

What does a R53 Resolver on “.2” serve?

A

Public resolution and any associated private zones

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

VPC DNS

Can you access your “.2” R53 Resolver from a Peering connection?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

VPC DNS

Can you access your “.2” R53 Resolver from a DX or VPN?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

VPC DNS

Biggest problem with R53 Resolvers on “.2”?

A

Hard to do hybrid, integrated DNS with on-prem enterprise.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

VPC DNS

What does a R53 Resolver do if it doesn’t have a record for a query?

A

Forwards to public DNS outside AWS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

DNS Endpoints

What (virtually) is a R53 Endpoint?

A

ENI

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

DNS Endpoints

Can you forward queries to a R53 Endpoint over DX?

A

Yes (it’s just an ENI)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

DNS Endpoints

Can you forward queries to a R53 Endpoint over VPN?

A

Yes (it’s just an ENI)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

DNS Endpoints

What flavors do DNS Endpoints come in?

A

Inbound (on-prem reach R53 Resolver) and Outbound (forward queries to on-prem DNS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

DNS Endpoints

Can DNS Endpoints support IPv6?

A

Yup! They can dual-stack both IPv4 and IPv6.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

DNS Endpoints

Where do R53 Endpoints live?

A

In Subnets (create several IPs in different subnets in a single R53 Endpoint)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

DNS Endpoints

What does a DNS Inbound Endpoint do?

A

Just forwards requests to the R53 Resolver (which is a separate thing!)

17
Q

DNS Endpoints

What does a DNS Outbound Endpoint do?

A

Just forwards requests to the on-prem DNS server

18
Q

DNS Endpoints

Two types of Outbound Rules?

A

“Forward” (DNS forwarding) and “System” (R53 Resolver handle locally)

19
Q

DNS Endpoints

What are Rules associated with or attached to?

A

VPCs (strange, yea) and a single Outbound Resolver

20
Q

DNS Endpoints

How do you make a DNS Endpoint HA?

A

Already is! It’s a single ENI, but multiple things behind it can scale automatically

21
Q

DNS Endpoints

How do you configure EC2 resources to use your Outbound Endpoint?

A

You don’t! R53 Resolver knows about Rules, which may point to the Outbound Endpoint.