Architecting on AWS Certification Networking & Content Delivery Flashcards
7 cards from real Architecting on AWS Certification practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 7 Architecting on AWS Certification Networking & Content Delivery flashcards as text
An architect needs to improve global application performance by routing users to the optimal AWS endpoint using the AWS global network. Which service should be used?
Answer: AWS Global Accelerator
AWS Global Accelerator routes user traffic through the AWS global network to the nearest healthy endpoint, reducing internet hops and improving performance for TCP/UDP applications.
A company wants to cache static and dynamic content at edge locations worldwide to reduce origin server load and improve response times. Which service is most appropriate?
Answer: Amazon CloudFront
Amazon CloudFront is AWS's CDN service that caches content at globally distributed edge locations, reducing latency for users and offloading requests from origin servers.
Which AWS Direct Connect connection type is provided by an AWS partner and shares bandwidth with other customers?
Answer: Hosted connection
A hosted Direct Connect connection is provisioned by an AWS Direct Connect partner, offering sub-1-Gbps options with shared bandwidth, while dedicated connections are exclusive 1/10/100 Gbps links.
An architect is designing a VPC and needs subnets that span multiple Availability Zones for high availability. What is true about AWS subnet placement?
Answer: A subnet is restricted to a single Availability Zone
Each subnet in a VPC resides entirely within one Availability Zone; to achieve multi-AZ coverage, you must create separate subnets in each AZ.
A company needs to privately access Amazon S3 from EC2 instances without traffic leaving the AWS network, and wants the simplest, most cost-effective option. Which should be used?
Answer: Gateway VPC Endpoint for S3
Gateway VPC Endpoints for S3 are free and route traffic to S3 privately through the AWS network by adding entries to VPC route tables, without requiring a NAT Gateway.
Which Application Load Balancer feature allows routing of requests to different target groups based on URL path patterns?
Answer: Path-based routing
Path-based routing on an ALB uses listener rules to forward requests matching specific URL path patterns (e.g., /api/* vs /images/*) to different target groups.
An architect needs to ensure that all traffic between EC2 instances in different VPCs stays on the private AWS network without going through the public internet. VPC peering is not suitable due to the number of VPCs involved. What is the recommended solution?
Answer: Use AWS Transit Gateway to interconnect all VPCs
AWS Transit Gateway serves as a central hub connecting many VPCs over the private AWS network, eliminating the O(n²) peering connections that would be needed without it.