Hard1 markMultiple Choice
Domain 1.1: Network ConnectivityNetworkingRoute 53Hybrid

AWS SAP-C02 · Question 41 · Domain 1.1: Network Connectivity

A company is designing a hybrid DNS architecture. They have an on-premises data center and a multi-account AWS environment connected via AWS Direct Connect. On-premises servers need to resolve AWS private hosted zones (e.g., database.internal). AWS resources need to resolve on-premises hostnames (e.g., mainframe.corp.local). The solution must be highly available and centrally managed. Which combination of steps should the Architect take? (Select THREE)

Answer options:

A.

Create an Amazon Route 53 Resolver Inbound Endpoint in a central shared services VPC.

B.

Create an Amazon Route 53 Resolver Outbound Endpoint in the central shared services VPC.

C.

Configure conditional forwarding rules on the on-premises DNS servers to point to the Inbound Endpoint IPs.

D.

Deploy EC2 instances running BIND DNS in the central VPC to act as forwarders.

E.

Configure Route 53 to use the on-premises DNS servers as the primary authoritative nameservers.

F.

Create a Route 53 public hosted zone for the on-premises domain.

How to approach this question

Identify the managed AWS service for hybrid DNS resolution.

Full Answer

Create an Amazon Route 53 Resolver Inbound Endpoint in a central shared services VPC., Create an Amazon Route 53 Resolver Outbound Endpoint in the central shared services VPC., Configure conditional forwarding rules on the on-premises DNS servers to point to the Inbound Endpoint IPs.
Amazon Route 53 Resolver provides managed endpoints for hybrid DNS. An Inbound Endpoint allows on-premises DNS queries to resolve AWS private hosted zones. An Outbound Endpoint allows AWS resources to resolve on-premises domains. You configure conditional forwarding on your on-premises DNS to send AWS queries to the Inbound Endpoint, and you configure Route 53 Resolver rules to send on-premises queries to the Outbound Endpoint.

Common mistakes

Choosing to deploy custom EC2 DNS servers instead of using the managed Route 53 Resolver.

Practice the full AWS Solutions Architect Professional SAP-C02 Practice Exam 5

75 questions · hints · full answers · grading

More questions from this exam