Skip to main content
Networking ⭐ Premium

AWS Certified Advanced Networking Specialty (ANS-C01) - 340 Questions

By Webmaster Certland ❤️ 0 likes

Practice exam for the AWS Certified Advanced Networking Specialty (ANS-C01). Covers network design, implementation, management and operation, and network security, compliance, and governance on AWS.

🔒

Premium Content

This exam is exclusive to Premium users. Upgrade to get unlimited access!

Become Premium

👁️ Free Preview (5 of 340 questions)

1. A company hosts a static website in an Amazon S3 bucket and uses Amazon CloudFront to deliver content globally. The security team requires that users cannot access the S3 bucket directly through S3 URLs — all requests must be routed through CloudFront. Which configuration achieves this requirement with the least operational overhead?

A Configure an Origin Access Identity (OAI) and attach it to the CloudFront distribution
B Configure Origin Access Control (OAC) on the CloudFront distribution and update the S3 bucket policy to allow access only from the CloudFront service principal
C Enable public read access on the S3 bucket and configure CloudFront to cache all responses
D Add an S3 bucket policy that restricts access to the CloudFront IP address ranges using aws:SourceIp conditions

2. A company wants to serve dynamic web content through Amazon CloudFront. The content differs based on the value of a custom HTTP request header named X-User-Tier. The company needs CloudFront to cache separate versions of each object for each unique value of this header. What should a network engineer configure to achieve this?

A Create a CloudFront cache policy that includes the X-User-Tier header in the cache key
B Create a CloudFront origin request policy that includes the X-User-Tier header
C Create a CloudFront response headers policy that includes the X-User-Tier header
D Deploy a Lambda@Edge function at the viewer request event to rewrite the URL based on the X-User-Tier header value

3. A startup is launching a global mobile gaming application. The app requires ultra-low latency for real-time game state synchronization using TCP connections. The architecture uses Amazon EC2 instances in us-east-1 and eu-west-1. Which AWS service should a network architect recommend to minimize latency for players worldwide?

A Deploy Amazon CloudFront with EC2 instances as custom origins
B Use Amazon Route 53 latency-based routing to direct players to the nearest region
C Deploy AWS Global Accelerator with EC2 instance endpoints in both regions
D Deploy an Application Load Balancer in each region and use Route 53 weighted routing

4. A company manages a public hosted zone in Amazon Route 53 for example.com. They want to create a DNS record for app.example.com that points to an Application Load Balancer. The load balancer's DNS name changes occasionally when it is replaced. Which record type should the network engineer use to avoid hardcoding the load balancer's DNS name as a CNAME?

A Create a Route 53 alias record pointing app.example.com to the Application Load Balancer DNS name
B Create a CNAME record pointing app.example.com to the Application Load Balancer DNS name
C Create an A record with the static IP address of the Application Load Balancer
D Create an AAAA record with the IPv6 address of the Application Load Balancer

5. A company's Route 53 hosted zone has a health check configured for their primary endpoint. The health check is set to evaluate every 30 seconds with a threshold of 3 consecutive failures before marking the endpoint unhealthy. How long at minimum must the endpoint be unresponsive before Route 53 marks it as unhealthy?

A 30 seconds
B 60 seconds
C 90 seconds
D 120 seconds

Want to test yourself for real?

Create a free account and run our exam simulation engine.

Free No credit card
  • Simulation engine
  • Up to 10 questions per attempt
  • Score & basic stats
Create free account Already have an account? Sign in
Best
Premium 7-day trial
  • All 340 questions
  • Detailed explanations
  • Smart Practice + Focus Mode
⭐ Start 7-day free trial

Information

Questions 340
Time 2h 50min
Difficulty Hard
Minimum Score 75.00%

🤍 Like

Related Exams

Discussion

No comments yet. Be the first to start the discussion!

Sign in to join the discussion.