VPC Flashcards

1
Q

What is VPC?

A

Virtual Private Cloud

There is one default VPC in each region

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are subnets?

A

Subnets are a network partition of the VPC

Subnets are tied to an availability zone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is an Internet Gateway?

A

at the VPC level, it provides Internet Access

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are NAT Gateway /Instances?

A

They give internet access to PRIVATE subnets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are NACLS?

A

Stateless, subnet rules for inbound and outbound traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are Security Groups?

A

Stateful (deny all inbound and allow all outbound)

operate at the EC2 instance level or ENI

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is VPC Peering?

A

Connect two or more VPCs with non overlapping IP ranges

They are non-transitive

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are VPC Endpoints?

A

VPC endpoint provide PRIVATE access to AWS Services within the VPC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are VPC Flow Logs?

A

network traffic logs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is Site to Site VPN?

A

VPN over public internet between on-premises Direct Connect (DC) and AWS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is Direct Connect?

A

direct private connection to AWS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

You would like to provide internet access to your instances in private subnets with IPv4, while making sure this solution requires the least amount of administration and scales seamlessly. What should you use?

A

NAT Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Your EC2 instance in a private subnet must access the AWS APIs privately. You must keep all traffic within the AWS network. What do you recommend?

A

VPC Endpoints

How well did you know this?
1
Not at all
2
3
4
5
Perfectly