Inspirational journeys

Follow the stories of academics and their research expeditions

AWS ANS-C00 Certified Advanced Networking Practice Questions 2023 - Part 34

Mary Smith

Fri, 17 Apr 2026

AWS ANS-C00 Certified Advanced Networking Practice Questions 2023 - Part 34

1. Your company is planning on testing out Amazon workspaces for their account. They are going to allocate a set of workstations with static IP addresses for this purpose. They need to ensure that only these IP addresses have access to Amazon Workspaces. How can you achieve this?

A) Create an P access control group
B) Specify the P addresses in the NACL
C) Place a WAF In front of Amazon Workspaces
D) Specify the P addresses in the Security Group



2. Your company is planning on using Cloud front along with 53 as the origin. There is a requirement to serve private content from 53. There is a requirement to ensure that access is restricted for certain individual files. How would you deliver the private content.

A) Use Signed Cookies
B) Use Private Keys
C) Use Signed URL?s
D) Use Security Groups



3. Your company has set EC2 Instances in a VPC. These Instances have been configured to query an on-premise Data center DNS server. But the Instances are not able to reach the On-premise server. Which of the following could be a reason for this? Choose 2 answers from the options given below ?(Select 2answers)

A) The NACL5 are blocking incoming on port 53 for TCP
B) The NACL?S are blocking outgoing on port 53 for TCP
C) The Security Groups for the EC2 Instances are blocking incoming on port 53
D) The NACUs are blocking incoming on port 53 for UDP
E) The NACL?S are blocking outgoing on port 53 for UDP


4. Your company is planning on moving its files from its on-premise location onto S3. The services hosted in the on-premise environment would need low latency access to these files. Which of the following is the most secure way to have this established?

A) Create a Direct Connect connection along with a Private VIF
B) Create a Direct Connect connection along with a Public VIF
C) Create a VPN connection which would allow the services on-premise to access S3
D) Create a VPN connection along with a VPC endpoint



5. You have a requirement to ensure that hosted zones created in Route 53 have name servers that resonate with your domain name. How can you achieve this? Choose 2 answers from the options given below(Select 2answers)

A) Create a Reusable delegation set using Route 53 API?s
B) Create a Reusable deletion set using the AWS(Amazon Web Service) Console
C) Create a Reusable delegation set using the AWS(Amazon Web Service) CLI
D) Specify the domain name when creating the record set for the name servers



1. Right Answer: A
Explanation:

2. Right Answer: C
Explanation:

3. Right Answer: B,E
Explanation:

4. Right Answer: B
Explanation:

5. Right Answer: A,C
Explanation:

0 Comments

Leave a comment