nerdexam
Amazon

ANS-C01 · Question #68

Your organization has a newly installed 1-Gbps AWS Direct Connect connection. You order the cross-connect from the Direct Connect location provider to the port on your router in the same facility…

The correct answer is B. 1-Gbps Single Mode Fiber Interface, 802.1Q VLAN, Peer IP Address, BGP Session with MD5. For a 1-Gbps AWS Direct Connect connection, the router must have a 1-Gbps single-mode fiber interface, support 802.1Q VLANs, be configured with a peer IP address, and establish a BGP session with MD5 authentication.

Submitted by cyberguy42· Mar 6, 2026Network Design

Question

Your organization has a newly installed 1-Gbps AWS Direct Connect connection. You order the cross-connect from the Direct Connect location provider to the port on your router in the same facility. To enable the use of your first virtual interface, your router must be configured appropriately. What are the minimum requirements for your router?

Options

  • A1-Gbps Multi Mode Fiber Interface, 802.1Q VLAN, Peer IP Address, BGP Session with MD5.
  • B1-Gbps Single Mode Fiber Interface, 802.1Q VLAN, Peer IP Address, BGP Session with MD5.
  • CIPsec Parameters, Pre-Shared key, Peer IP Address, BGP Session with MD5
  • DBGP Session with MD5, 802.1Q VLAN, Route-Map, Prefix List, IPsec encrypted GRE Tunnel

How the community answered

(50 responses)
  • A
    2% (1)
  • B
    88% (44)
  • C
    6% (3)
  • D
    4% (2)

Why each option

For a 1-Gbps AWS Direct Connect connection, the router must have a 1-Gbps single-mode fiber interface, support 802.1Q VLANs, be configured with a peer IP address, and establish a BGP session with MD5 authentication.

A1-Gbps Multi Mode Fiber Interface, 802.1Q VLAN, Peer IP Address, BGP Session with MD5.

Multi-mode fiber is generally used for shorter distances or specific equipment and is not the standard specification for AWS Direct Connect 1-Gbps connections, which primarily use single-mode fiber.

B1-Gbps Single Mode Fiber Interface, 802.1Q VLAN, Peer IP Address, BGP Session with MD5.Correct

AWS Direct Connect 1-Gbps connections require a single-mode fiber interface, 802.1Q VLAN encapsulation for virtual interfaces, a peer IP address, and a BGP session, typically with MD5 authentication for security.

CIPsec Parameters, Pre-Shared key, Peer IP Address, BGP Session with MD5

IPsec Parameters and Pre-Shared Key are for VPN connections, not for the underlying Direct Connect physical or virtual interface establishment itself, although a VPN can be layered on top.

DBGP Session with MD5, 802.1Q VLAN, Route-Map, Prefix List, IPsec encrypted GRE Tunnel

Route-Maps and Prefix Lists are for advanced BGP routing control, not minimum requirements; an IPsec encrypted GRE Tunnel is a complex overlay and not a foundational Direct Connect requirement.

Concept tested: Direct Connect Router Requirements

Source: https://docs.aws.amazon.com/directconnect/latest/UserGuide/WorkingWithConnections.html

Topics

#Direct Connect#router requirements#802.1Q VLAN#BGP peering

Community Discussion

No community discussion yet for this question.

Full ANS-C01 Practice