Hard1 markMultiple Choice
Domain 1.1: Network ConnectivityNetworkingCloud WANHybrid

AWS SAP-C02 · Question 06 · Domain 1.1: Network Connectivity

An architecture team is designing a hybrid network. They have two on-premises data centers and three AWS Regions. They need encrypted, high-throughput connectivity between all on-premises locations and all AWS Regions. The solution must support dynamic routing and minimize the number of point-to-point VPN connections to manage. Which architecture is BEST?

Answer options:

A.

Deploy AWS Cloud WAN. Create a global core network. Attach AWS Site-to-Site VPN connections from the data centers to the closest Cloud WAN edge locations. Attach regional VPCs to the core network.

B.

Deploy a Transit Gateway in each Region. Peer all Transit Gateways. Create Site-to-Site VPNs from each data center to every Transit Gateway.

C.

Use AWS Direct Connect with MACsec encryption. Connect each data center to a Direct Connect Gateway. Associate the Direct Connect Gateway with Virtual Private Gateways in each Region.

D.

Deploy software SD-WAN appliances on EC2 instances in a central transit VPC. Route all global traffic through this VPC using VPC peering.

How to approach this question

Identify the service designed for global, managed wide-area networking.

Full Answer

A.Deploy AWS Cloud WAN. Create a global core network. Attach AWS Site-to-Site VPN connections from the data centers to the closest Cloud WAN edge locations. Attach regional VPCs to the core network.✓ Correct
Deploy AWS Cloud WAN. Create a global core network. Attach AWS Site-to-Site VPN connections from the data centers to the closest Cloud WAN edge locations. Attach regional VPCs to the core network.
AWS Cloud WAN provides a central dashboard for making connections between your branch offices, data centers, and Amazon VPCs—building a global network with only a few clicks. It automatically handles the complex mesh routing.

Common mistakes

Choosing Transit Gateway peering, which requires more manual routing configuration for global hybrid setups.

Practice the full AWS Solutions Architect Professional SAP-C02 Practice Exam 5

75 questions · hints · full answers · grading

More questions from this exam