Hybrid and Migration Flashcards

1
Q

What is BGP?

A

Border Gateway Protocol - A protocol that enables routers to exchange networking information for the purposes of path vectoring between a collection of peered ASes (Autonomous Systems).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the BGP communication protocol?

A

TCP on port 179.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is an ASN?

A

Autonomous System Number - a unique 16-bit number allocated to an AS by IANA (private range 64512-65534).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What’s the difference between iBGP and eBGP?

A

The prefix indicates internal (routing within an AS) versus external (routing between ASes).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is an ASPATH?

A

Autonomous System Path - The routing path or hops between two ASes. The “best” path as identified by BGP is the path with the fewest router hops - not necessarily the fastest based on connection speeds and latency conditions.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the site-to-site VPN speed limit imposed by AWS?

A

1.25 Gbps. Also applies to the VGW (Virtual Private Gateway).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What’s the main upside of VPNs over other, private connection technologies?

A

Speed to setup is hours, as it is all software configuration.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is AWS Direct Connect (DX)?

A

A physical connection into the AWS network from one or more external networks. Not resilient by default.

Specifically, a 1Gpbs or 10Gpbs network port operating at a certain speed belonging to an AWS account.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Are DX communications encrypted?

A

No. But a common work-around is to use a public VIF to connect into a VGW. IPSEC VPN over the public VIF instead of public internet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is Transit Gateway (TGW)?

A

A network transit hub which connects VPCs to each other as well as to on-premise networks via site-to-site VPNs and Direct Connect.

TGW is a network gateway product and is thus HA and scalable.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Can Transit Gateways peer with each other across regions or across acounts?

A

Both cross-region and cross-account.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

When creating Transit Gateway Attachments for VPCs, where are network interfaces placed?

A

One subnet per AZ in the VPC’s region.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

When creating Transit Gateway Attachments for VPCs or VPNs, is full transitive routing between VPCs automatically set up?

A

No. You still need to add routing for the foreign VPC/N’s CIDR that targets the TGW. VPN peers also requires or Transit Gateway Route entries that route to the CGW setup for the VPN.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is Storage Gateway?

A

A virtual storage appliance designed to run in an existence virtual environment, on-premise or in a datacenter with VMWare.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What are the three Storage Gateway modes?

A
  1. Tape Gateway (VTL) Mode - looks like a tape library.
  2. File Mode - file shares exposed via SMB or NFS.
  3. Volume Mode - Block store volumes exposed over iSCSI.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What data size ranges would constitute economical use of Snowball for physical data transfer?

A

10 TB to 10 PB.

17
Q

What is unique to Snowball Edge over standard Snowball?

A

Edge has larger capacity and faster networking options, up to 100 Gbps, and can optionally include compute resources to run EC2 instances.

18
Q

What is AWS Directory Service?

A

A managed service that provides directory services, which can run with AD DS compatibility or SAMBA compatibility.

19
Q

What are the Directory Services modes and functions?

A

Simple AD - the default with simple requirements, no on-premise connection.
Microsoft AD - for requirements that expect AD DS.
AD Connector - a proxy to an existing on-premise directory.

20
Q

What is AWS DataSync?

A

An end-to-end managed data transfer service for moving data in/out of AWS, designed to work at huge scale, and by default includes data validation.

Supports encryption, scheduling, throttling, retries, and more.

21
Q

What is FSx?

A

A file-sharing product for Windows File Server, similar to what EFS offers for Linux.

22
Q

What are some FSx related technologies?

A
  • VSS - User file/folder-level restores with versioning.
  • Windows-Native file systems over SMB.
  • Uses the Windows permission model.
  • Support DFS - Distributed File System for scaling-out file systems in Windows environments.
  • Managed - no EC2 admin overhead.
  • Integrates with directory services.
23
Q

What is FSx for Lustre?

A

Managed implementation of the Lustre file system, which is a high performance computing model that supports Linux-style POSIX permissions.