nerdexam
Amazon

ANS-C01 · Question #192

A global company is designing a hybrid architecture to privately access AWS resources in the us- west-2 Region. The company's existing architecture includes a VPC that uses RFC 1918 IP address…

The correct answer is B. Create an S3 interface endpoint in the VPC. Configure a Route 53 Resolver inbound endpoint in. https://docs.aws.amazon.com/AmazonS3/latest/userguide/privatelink-interface-endpoints.html

Submitted by marco_it· Mar 6, 2026Hybrid Connectivity

Question

A global company is designing a hybrid architecture to privately access AWS resources in the us- west-2 Region. The company's existing architecture includes a VPC that uses RFC 1918 IP address space. The VPC is connected to an on-premises data center over AWS Direct Connect Amazon Route 53 provides name resolution within the VPC. Locally managed DNS servers in the data center provide DNS services to the on-premises hosts. The company has applications in the data center that need to download objects from an Amazon S3 bucket in us-west-2. Which solution can the company use to access Amazon S3 without using the public IP address space?

Options

  • ACreate an S3 interface endpoint in the VPC. Update the on-premises application configuration to
  • BCreate an S3 interface endpoint in the VPC. Configure a Route 53 Resolver inbound endpoint in
  • CCreate an S3 gateway endpoint in the VPUpdate the on-premises application configuration to use
  • DCreate an S3 gateway endpoint in the VPC. Configure a Route 53 Resolver inbound endpoint in

How the community answered

(38 responses)
  • A
    3% (1)
  • B
    82% (31)
  • C
    5% (2)
  • D
    11% (4)

Explanation

https://docs.aws.amazon.com/AmazonS3/latest/userguide/privatelink-interface-endpoints.html

Community Discussion

No community discussion yet for this question.

Full ANS-C01 Practice