nerdexam
AmazonAmazon

DOP-C02 · Question #373

DOP-C02 Question #373: Real Exam Question with Answer & Explanation

Sign in or unlock DOP-C02 to reveal the answer and full explanation for question #373. The question stem and answer options stay visible for context.

Submitted by zhang_li· Mar 6, 2026Resilient Cloud Solutions

Question

You are building a deployment system on AWS. You will deploy new code by bootstrapping instances in a private subnet in a VPC at runtime using UserData scripts pointing to an S3 zip file object, where your code is stored. An ELB in a public subnet has network interfaces and connectivity to the instances. Requests from users of the system are routed to the ELB via a Route53 A Record Alias. You do not use any VPC endpoints. Which is a risk of using this approach?

Options

  • ARoute53 Alias records do not always update dynamically with ELB network changes after
  • BIf the NAT routing for the private subnet fails, deployments fail.
  • CKernel changes to the base AMI may render the code inoperable.
  • DThe instances cannot be in a private subnet if the ELB is in a public one.

Unlock DOP-C02 to see the answer

You've previewed enough free DOP-C02 questions. Unlock DOP-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#VPC networking#Private subnets#NAT Gateway#S3 access#Bootstrapping
Full DOP-C02 PracticeBrowse All DOP-C02 Questions