码农知识堂 - 1000bd
  •   Python
  •   PHP
  •   JS/TS
  •   JAVA
  •   C/C++
  •   C#
  •   GO
  •   Kotlin
  •   Swift
  • AWS SAA-C03 #101


    A solutions architect is designing a VPC with public and private subnets. The VPC and subnets use IPv4 CIDR blocks. There is one public subnet and one private subnet in each of three Availability Zones (AZs) for high availability. An internet gateway is used to provide internet access for the public subnets. The private subnets require access to the internet to allow Amazon EC2 instances to download software updates.
    What should the solutions architect do to enable Internet access for the private subnets?

    A. Create three NAT gateways, one for each public subnet in each AZ. Create a private route table for each AZ that forwards non-VPC traffic to the NAT gateway in its AZ.
    B. Create three NAT instances, one for each private subnet in each AZ. Create a private route table for each AZ that forwards non-VPC traffic to the NAT instance in its AZ.
    C. Create a second internet gateway on one of the private subnets. Update the route table for the private subnets that forward non-VPC traffic to the private internet gateway.
    D. Create an egress-only internet gateway on one of the public subnets. Update the route table for the private subnets that forward non-VPC traffic to the egress-only Internet gateway.


    The correct answer is A. Create three NAT gateways, one for each public subnet in each AZ. Create a private route table for each AZ that forwards non-VPC traffic to the NAT gateway in its AZ.

    Here’s why:

    • NAT Gateways are used to provide internet connectivity to EC2 instances in private subnets. They are highly available and scalable, and they reside within a specific Availability Zone and are redundant in that zone.
    • Each private subnet in an AZ should have a route to the NAT Gateway in the same AZ. This ensures that if an AZ goes down, the instances in the private subnet of other AZs can still access the internet via their respective NAT Gateways.
    • NAT instances could be used, but they are not as highly available or scalable as NAT Gateways.
    • A second Internet Gateway or an Egress-only Internet Gateway would not provide the necessary routing for instances in a private subnet to access the internet. Internet Gateways are used for public subnets, and Egress-only Internet Gateways are used for IPv6 traffic in a VPC, not IPv4.
  • 相关阅读:
    valueerror: Object arrays cannot be loaded when allow_pickle=False 报错解决方法
    jQuery的extend方法仅仅是字面意思上的扩展吗?
    ArrayList集合源码分析
    UICollectionView
    DataFunSummit 2023因果推断在线峰会:解码数据与因果,引领智能决策新篇章(附大会核心PPT下载)
    基于Syntiant TinyML Board与Edge Impulse的LED语音控制(Arduino/C++)
    Shell 输入/输出重定向
    高精定位市场上,蓝牙AOA如何破局?
    【专升本毕业设计报告】33台词网系统_测试方案_测试报告_测试用例_自动化测试_性能测试_缺陷报告
    数据迁移库工具-C版-01-HappySunshineV1.0-(支持Gbase8a)
  • 原文地址:https://blog.csdn.net/binglingshuang/article/details/132876415
  • 最新文章
  • 攻防演习之三天拿下官网站群
    数据安全治理学习——前期安全规划和安全管理体系建设
    企业安全 | 企业内一次钓鱼演练准备过程
    内网渗透测试 | Kerberos协议及其部分攻击手法
    0day的产生 | 不懂代码的"代码审计"
    安装scrcpy-client模块av模块异常,环境问题解决方案
    leetcode hot100【LeetCode 279. 完全平方数】java实现
    OpenWrt下安装Mosquitto
    AnatoMask论文汇总
    【AI日记】24.11.01 LangChain、openai api和github copilot
  • 热门文章
  • 十款代码表白小特效 一个比一个浪漫 赶紧收藏起来吧!!!
    奉劝各位学弟学妹们,该打造你的技术影响力了!
    五年了,我在 CSDN 的两个一百万。
    Java俄罗斯方块,老程序员花了一个周末,连接中学年代!
    面试官都震惊,你这网络基础可以啊!
    你真的会用百度吗?我不信 — 那些不为人知的搜索引擎语法
    心情不好的时候,用 Python 画棵樱花树送给自己吧
    通宵一晚做出来的一款类似CS的第一人称射击游戏Demo!原来做游戏也不是很难,连憨憨学妹都学会了!
    13 万字 C 语言从入门到精通保姆级教程2021 年版
    10行代码集2000张美女图,Python爬虫120例,再上征途
Copyright © 2022 侵权请联系2656653265@qq.com    京ICP备2022015340号-1
正则表达式工具 cron表达式工具 密码生成工具

京公网安备 11010502049817号