VPC Flashcards

1
Q

virtual data center in the cloud

A

VPC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Logically isolated part of AWS Cloud where you can define your own network

A

VPC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Conisits of internet gateways, route tables, network access control lists, subnets, and security groups

A

VPC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

How many AZ are subnets in?

A

1

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Created automatically when creating a VPC

A

Route table, Network ACL, Security Group

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How many reserved IP are in there in a CIDR block?

A

5

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

10.0.0.0 is reserved for

A

Network Address

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

10.0.0.1 is reserved for

A

VPC Router

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

10.0.0.2 is reserved for

A

IP address of the DNS Server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

10.0.0.3 is reserved for

A

Future use

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

10.0.0.255 is reserved for

A

Network broadcast address

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

How to make a subnet public

A

Add internet gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Used to enable instances in a private subnet to connect to the internet or other AWS services while preventing the internet from initiating a connection with those instances

A

NAT Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Redundant inside the AZ

A

NAT Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Starts at 5gbps and scales to 45 Gbps

A

NAT Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Are NAT gateways automatically assigned a public IP?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Virtual firewalls for an EC2 instance, by default everything is blocked

A

Security Groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

If you send a request from your instance the response traffic for that request is allowed to flow in regardless of inbound security group rules

A

Stateful

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Responses to allowed inbound traffic are allowed to flow out, regardless of outbound rules

A

Stateful

20
Q

Optional layer of security for your vpc that acts as a firewall for controlling traffic in and out of one or more subnets

A

Network Access Control list (ACL)

21
Q

You can block up addresses using

A

Network ACL

22
Q

Default Network ACL traffic logic

A

All outbound and inbound traffic allowed

23
Q

Custom Network ACL traffic logic

A

All outbound and inbound traffic denied until rules are added

24
Q

Can Network ACL be associated with multiple subnets?

A

Yes

25
Q

Can subnets be associated with multiple network ACLS

A

No

26
Q

Network ACL rule logic

A

Ordered starting with lowest numbered rule

27
Q

Responses to allowed inbound traffic are subject to the rules for outbound traffic

A

Stateless

28
Q

Stateful security

A

Security groups

29
Q

Stateless security

A

Network ACL

30
Q

Enables you to privately connect your VPC to supported AWS services and VPC endpoint services

A

VPC Endpoint

31
Q

Horizontally scaled redundant and highly available VPC components that allow communication between instances in your VPC and services

A

VPC Endpoint

32
Q

An elastic network interface with a private IP address that serves as an entry point for traffic headed to a supported service.

A

Interface Endpoints

33
Q

A virtual device that is provisioned which supports connection to S3 and DynamoDB

A

Gateway Endpoints

34
Q

Allows you to connect one VPC with another via a direct network route using private IP addresses

A

VPC peering

35
Q

Can you VPC peer between regions?

A

Yes

36
Q

Best way to expose a service VPC to tens, hundreds, or thousands of customer VPCs

A

PrivateLink

37
Q

Requires a Network Load Balancer on the service VPC and an ENI on the customer VPC

A

AWS PrivateLink

38
Q

Used when you have multiple sites, each with its own VPN connection

A

VPN Cloudhub

39
Q

Makes it easy to establish a dedicated reliable network connection from your premises to AWS, Used for high-throughput workloads

A

Direct Connect

40
Q

2 Types of direct connect connection

A

Dedicated, Hosted

41
Q

Direct connect connection that is a physical ethernet connection associated with a single customer

A

Dedicated Connection

42
Q

Direct connect connection that is a physical ethernet connection that an AWS Direct Connect Parter provisions on behalf of a customer

A

Hosted

43
Q

Connects VPCs and on-premise networks through a central hub to simply network topology. Acts as a cloud router

A

Transit Gateway

44
Q

Allows you to have transitive peering between thousands of VPCs and on-premises data centers

A

Transit Gateway

45
Q

Embeds AWS compute and storage services within 5g networks for mobile edge computing

A

AWS Wavelength

46
Q
A