nerdexam
AmazonAmazon

ANS-C01 · Question #84

ANS-C01 Question #84: Real Exam Question with Answer & Explanation

Sign in or unlock ANS-C01 to reveal the answer and full explanation for question #84. The question stem and answer options stay visible for context.

Submitted by fernanda_arg· Mar 6, 2026Design and Implement Advanced Network Architectures

Question

A company has hundreds of Amazon EC2 instances that are running in two production VPCs across all Availability Zones in the us-east-1 Region. The production VPCs are named VPC A and VPC B. A new security regulation requires all traffic between production VPCs to be inspected before the traffic is routed to its final destination. The company deploys a new shared VPC that contains a stateful firewall appliance and a transit gateway with a VPC attachment across all VPCs to route traffic between VPC A and VPC B through the firewall appliance for inspection. During testing, the company notices that the transit gateway is dropping the traffic whenever the traffic is between two Availability Zones. What should a network engineer do to fix this issue with the LEAST management overhead?

Options

  • AIn the shared VPC, replace the VPC attachment with a VPN attachment. Create a VPN tunnel
  • BEnable transit gateway appliance mode on the VPC attachment in VPC A and VPC B.
  • CEnable transit gateway appliance mode on the VPC attachment in the shared VPC.
  • DIn the shared VPC, configure one VPC peering connection to VPC A and another VPC peering

Unlock ANS-C01 to see the answer

You've previewed enough free ANS-C01 questions. Unlock ANS-C01 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#AWS Transit Gateway#TGW Appliance Mode#Inter-VPC routing#Network Firewall
Full ANS-C01 PracticeBrowse All ANS-C01 Questions