AWS Certified SysOps Administrator – AssociateNetworking and Content DeliveryHard

A SysOps administrator needs to establish a secure and dedicated network connection between an on-premises data center and an AWS VPC. The connection must offer consistent network performance and lower latency than an internet-based VPN connection. The company requires a private connection for transferring large datasets frequently. Which AWS service should the administrator recommend?

  1. AVPC Peering.
  2. BAWS Direct Connect.
  3. CAWS Site-to-Site VPN.
  4. DInternet Gateway.
Show answer & explanation

Correct answer: B. AWS Direct Connect.

AWS Direct Connect provides a dedicated, private network connection from your on-premises data center to AWS. It offers consistent network performance, reduced network costs, and lower latency compared to internet-based connections like Site-to-Site VPN, making it ideal for transferring large datasets and critical applications.

Why the other options are wrong

  • A. VPC Peering connects two VPCs, not an on-premises data center to a VPC.
  • C. Site-to-Site VPN uses the public internet, which can have variable performance and higher latency, not meeting the 'consistent performance' and 'lower latency' requirements.
  • D. An Internet Gateway provides internet access for a VPC and would expose traffic to the public internet, failing the 'private connection' requirement.

AWS Direct Connect

AWS Direct Connect creates a dedicated network connection from your premises to AWS, bypassing the public internet to offer consistent performance, reduced costs, and enhanced security.

  • Dedicated, private connection.
  • Consistent network performance and lower latency.
  • Ideal for large data transfers and hybrid environments.

Memory trick: To 'Directly Connect' your 'on-premises' to 'AWS' with 'privacy' and 'performance', use 'Direct Connect'.

More Networking and Content Delivery questions