AWS Certified SysOps Administrator – AssociateNetworking and Content DeliveryEasy

A company is deploying a new application that will process sensitive customer data. The application requires dedicated network performance and a consistent network experience between its on-premises data center and the AWS Cloud. The existing internet VPN connection is not meeting the performance and reliability requirements. Which AWS service should the company use to establish this connection?

  1. AAWS Direct Connect
  2. BAWS Site-to-Site VPN
  3. CAWS Transit Gateway
  4. DVPC Peering
Show answer & explanation

Correct answer: A. AWS Direct Connect

AWS Direct Connect provides a dedicated private network connection from your premises to AWS. This offers consistent network performance, reduced cost for high bandwidth, and a more reliable experience compared to internet-based VPN connections, which is crucial for sensitive data and dedicated performance requirements.

Why the other options are wrong

  • B. Site-to-Site VPN uses the public internet, which does not guarantee consistent performance or dedicated bandwidth.
  • C. Transit Gateway connects multiple VPCs and on-premises networks but relies on underlying connectivity like VPN or Direct Connect.
  • D. VPC Peering connects two VPCs together within AWS, not an on-premises data center to AWS.

AWS Hybrid Cloud Connectivity

Services that enable connecting on-premises data centers to the AWS cloud, facilitating hybrid cloud architectures.

  • AWS Site-to-Site VPN uses the public internet, encrypted.
  • AWS Direct Connect provides a dedicated private connection.
  • Choice depends on performance, reliability, and security needs.

Memory trick: Connect to AWS: VPN for quick, Direct Connect for dedicated.

More Networking and Content Delivery questions