VPC & Networking Flashcards

1
Q

What is a private network to deploy your resources

(regional resource)?

A

Virtual Private Cloud (VPC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What allows you to partition your network inside your VPC (Availability Zone resource)?

A

Subnet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the difference between public & private subnet?

A

Accessibility from the Internet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

How do you define access to the internet and between subnets?

A

using Route Tables

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What helps our VPC instances connect with the internet?

A

Internet Gateways

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What allow your instances in your Private Subnets

to access the internet while remaining private?

A

NAT Gateways (AWS-mged) & NAT Instances (self-mged)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is a firewall that controls traffic to/from subnet by specifying allow & deny rules?

A

Network ACL

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is a firewall that controls traffic to and from an

ENI / an EC2 Instance and can have only ALLOW?

A

Security Groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What capture information about IP traffic going into your interfaces, helps monitor & troubleshoot connectivity issues, and captures network information from AWS managed interfaces too?

A

VPC Flow Logs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is a non-transitive capability to connect 2 VPCs privately using AWS’ network?

A

VPC Peering

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What endpoints allow you to connect to AWS
Services using a private network instead of the public www network allowing you enhanced security and
lower latency to access AWS services?

A

VPC Endpoints

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What connects an on-premises VPN to AWS via public internet?

What about on-prem to AWS via private internet?

Which is faster?

A

Site to Site VPN

Direct Connect

Site-to-Site VPN is faster (5 mins) vs. Direct Connect (at least 1 mth)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What establishes a physical connection between on-premises and AWS?

A

Direct Connect (DX)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What 2 things need to exist to set up a Site to Site VPN?

A

On-prem needs Customer Gateway (CGW) and AWS must use a Virtual Private Gateway (VGW)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What connects thousands of VPC and on-premises networks together?

A

Transit Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly