Topic 1 Question 283
2 つ選択A company wants to send data from its on-premises systems to Amazon S3 buckets. The company created the S3 buckets in three different accounts. The company must send the data privately without the data traveling across the internet. The company has no existing dedicated connectivity to AWS.
Which combination of steps should a solutions architect take to meet these requirements?
Establish a networking account in the AWS Cloud. Create a private VPC in the networking account. Set up an AWS Direct Connect connection with a private VIF between the on-premises environment and the private VPC.
Establish a networking account in the AWS Cloud. Create a private VPC in the networking account. Set up an AWS Direct Connect connection with a public VIF between the on-premises environment and the private VPC.
Create an Amazon S3 interface endpoint in the networking account.
Create an Amazon S3 gateway endpoint in the networking account.
Establish a networking account in the AWS Cloud. Create a private VPC in the networking account. Peer VPCs from the accounts that host the S3 buckets with the VPC in the network account.
ユーザの投票
コメント(17)
- 👍 3NETeng012023/06/26
- 正解だと思う選択肢: AC
AC - detailed steps under use case 2 -> https://repost.aws/knowledge-center/s3-bucket-access-direct-connect
👍 3SmileyCloud2023/06/27 - 正解だと思う選択肢: A
olabiba.ai says A,C.
Keep in mind However, gateway endpoints do not allow access from on-premises networks, from peered VPCs in other AWS Regions, or through a transit gateway. For those scenarios, you must use an interface endpoint. https://docs.aws.amazon.com/vpc/latest/privatelink/vpc-endpoints-s3.htmlditional cost.
👍 2Jackhemo2023/06/23
シ ャッフルモード