nerdexam
AmazonAmazon

SOA-C02 · Question #521

SOA-C02 Question #521: Real Exam Question with Answer & Explanation

Sign in or unlock SOA-C02 to reveal the answer and full explanation for question #521. The question stem and answer options stay visible for context.

Submitted by khalil_dz· Mar 30, 2026

Question

A SysOps administrator is troubleshooting a VPC with public and private subnets that leverage custom network ACLs. Instances in the private subnet are unable to access the internet. There is an internet gateway attached to the public subnet. The private subnet has a route to a NAT gateway that is also attached to the public subnet. The Amazon EC2 instances are associated with the default security group for the VPC. What is causing the issue in this scenario?

Options

  • AThere is a network ACL on the private subnet set to deny all outbound traffic.
  • BThere is no NAT gateway deployed in the private subnet of the VPC.
  • CThe default security group for the VPC blocks all inbound traffic to the EC2 instances.
  • DThe default security group for the VPC blocks all outbound traffic from the EC2 instances.

Unlock SOA-C02 to see the answer

You've previewed enough free SOA-C02 questions. Unlock SOA-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full SOA-C02 PracticeBrowse All SOA-C02 Questions