AWS Certified Cloud Practitioner (CLF-C02)Cloud Technology and ServicesEasy
A consulting firm needs to set up a secure and isolated network environment in AWS for a new client. This environment must have a dedicated IP address range, subnets configured for both public and private resources, and custom route tables to control traffic flow. Which AWS networking service is the foundational component for creating this isolated network?
- AAmazon Virtual Private Cloud (VPC)
- BAmazon Route 53
- CElastic Load Balancing (ELB)
- DAWS Direct Connect
Show answer & explanationAnswer & explanation
Correct answer: A. Amazon Virtual Private Cloud (VPC)
Amazon Virtual Private Cloud (VPC) is the foundational networking service in AWS that allows you to provision a logically isolated section of the AWS Cloud where you can launch AWS resources in a virtual network that you define. This includes defining your own IP address range, creating subnets (public and private), and configuring route tables.
Why the other options are wrong
- B. Amazon Route 53 is a DNS web service for routing traffic, not for defining the core isolated network environment.
- C. Elastic Load Balancing (ELB) distributes incoming application traffic, but it relies on an existing VPC for its operation and does not create the isolated network itself.
- D. AWS Direct Connect establishes a dedicated connection from on-premises to AWS, but it doesn't create the virtual network within AWS.
Amazon Virtual Private Cloud (VPC)
A logically isolated section of the AWS Cloud where you can launch AWS resources in a virtual network that you define, with full control over your virtual networking environment.
- Define your own IP address range using CIDR blocks.
- Create subnets (public and private) within your VPC.
- Configure route tables, network gateways, and security settings.
Memory trick: VPC: Your Very Private Cloud.