nerdexam
Amazon

SOA-C02 · Question #485

A company has set up an IPsec tunnel between its AWS environment and its on-premises data center. The tunnel is reporting as UP, but the Amazon EC2 instances are not able to ping any on- premises…

The correct answer is C. Enable route propagation for the virtual private gateway in the route table that is assigned to the. https://docs.aws.amazon.com/vpc/latest/userguide/WorkWithRouteTables.html#EnableDisableRo

Submitted by salim_om· Mar 30, 2026Networking and Content Delivery

Question

A company has set up an IPsec tunnel between its AWS environment and its on-premises data center. The tunnel is reporting as UP, but the Amazon EC2 instances are not able to ping any on- premises resources. What should a SysOps administrator do to resolve this issue?

Options

  • ACreate a new inbound rule on the EC2 instances' security groups to allow ICMP traffic from the
  • BCreate a peering connection between the IPsec tunnel and the subnet of the EC2 instances.
  • CEnable route propagation for the virtual private gateway in the route table that is assigned to the
  • DModify the VPC's DHCP options set. Add the IPsec tunnel to the VPN section.

How the community answered

(45 responses)
  • A
    2% (1)
  • B
    11% (5)
  • C
    82% (37)
  • D
    4% (2)

Explanation

https://docs.aws.amazon.com/vpc/latest/userguide/WorkWithRouteTables.html#EnableDisableRo

Topics

#VPN route propagation#virtual private gateway#IPsec tunnel#route tables

Community Discussion

No community discussion yet for this question.

Full SOA-C02 Practice