Hard1 markMultiple Choice
Domain 3.1: Operational ExcellenceHybridSystems ManagerDirect Connect

AWS SAP-C02 · Question 45 · Domain 3.1: Operational Excellence

A company is designing a hybrid cloud architecture. They have an AWS Direct Connect connection. They want to use AWS Systems Manager to manage their on-premises servers alongside their EC2 instances. The on-premises servers do not have direct internet access. Which combination of steps is required? (Select THREE)

Answer options:

A.

Install the SSM Agent on the on-premises servers.

B.

Create VPC Endpoints for Systems Manager in the VPC.

C.

Create an IAM service role for Systems Manager and register the on-premises servers as managed instances.

D.

Deploy an AWS Storage Gateway on-premises.

E.

Configure an AWS VPN connection as a backup to Direct Connect.

F.

Assign public IP addresses to the on-premises servers.

How to approach this question

Identify the requirements for hybrid Systems Manager without internet.

Full Answer

Install the SSM Agent on the on-premises servers., Create VPC Endpoints for Systems Manager in the VPC., Create an IAM service role for Systems Manager and register the on-premises servers as managed instances.
To manage on-premises servers with SSM without internet access, you must install the SSM Agent, register the servers using an IAM role (Hybrid Activation), and use VPC Endpoints so the traffic flows privately over Direct Connect.

Common mistakes

Forgetting that VPC Endpoints are required for private API access.

Practice the full AWS Solutions Architect Professional SAP-C02 Practice Exam 7

75 questions · hints · full answers · grading

More questions from this exam