VPC Flashcards

1
Q

VPC

Virtual Data Center

A

In the cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

VPC

L VPCs allowed in each AWS region by

A

default

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

VPC

All subnets in default VPC have

A

Internet Gateway attached

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

VPC

Multiple Internet Gateways can be created but there can be only 1

A

attached to a VPC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

VPC

Each EC2 instance have both Public and Private

A

IP addresses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

VPC

If you delete the default VPC - how do you get it back

A

Submit a support ticket

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

VPC

When you create a VPC then this is automatically created as well

A

Default main routing table.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

VPC

One subnet is mapped to one

A

There can be only 1 AZ

–thus multiple AZs are not allowed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

VPC

The largest CIDR block available when provisioning an IP space for a VPC

A

/16

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

VPC

Always subnet as is never useable

A

x.x.x.0

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

VPC

Reserved by AWS for VPC routr

A

x.x.x.1

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

VPC

Reserved by AWS for subnet DNS

A

x.x.x.2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

VPC

Reserved by AWS for future use

A

x.x.x.3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

VPC

Always subnet broadcast address and is never useable

A

x.x.x.255

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

VPC

169.254.169.253

A

Amazon DNS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

VPC

By default all traffic between subnets is

A

Allowed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

VPC

By default NOT all subnets have access to the

A

Internet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

VPC

Need by a subnet to access the internet

A

Internet Gateway
–or–
Nat Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

VPC

Nat Gateway is required for

A

Private subnets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

VPC

Only 1 Internet Gateway per

A

VPC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

VPC

Can stretch across different AZs

A

Security Group

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

VPC

Use for Hardware Virtual Private Network VPN

A

Connection between your corporate data center and your VPC to leverage the AWS cloud as an extension of your corporate data center

23
Q

VPC

Disable Source/Destination checks when creating a NAT instance

A

Or you could encounter issues

24
Q

VPC

Must be in a PUBLIC subnet

A

NAT INSTANCES

25
Q

VPC

In order for it to work correctly there must be a route out of the private subnet to the

A

Nat Instance

26
Q

VPC

If you experience any bottlenecks with nat instances

A

Increase the size of the instance

27
Q

VPC

Nat instances are always behind a

A

Security Group

28
Q

VPC

Achieved by using Auto-scaling groups or multiple subnets in different AZs - with scripted fail-pver

A

High Availability

29
Q

VPC

Nat instances scale automatically up to

DaZe Gob

A

10 Gigabytes

30
Q

VPC

Do you patch NAT gateways

A

NO - because the AMI is handled by AWS

31
Q

VPC

NAT gateways are automatically assigned

A

a public IP address

32
Q

VPC

You need to do this when creating a new NAT Gateway

A

Update your route table.

33
Q

VPC

NAT Gateways are NOT associated with

A

Security Groups

34
Q

VPC

Numbered list of rules that are evaluated in order - starting at the lowest numbered rule first to determine what traffic is allowed in or out depending on what subnet is associated with the rule

A

Network Access Control List

NACL

35
Q

VPC

The highest NACL rule number is

MuDKaPP

A

32766

36
Q

VPC

Begin with rules at this number so you can insert rules if needed

DiSS

A

100

37
Q

VPC

By default the default NACL allows traffic

A

IN and Out

38
Q

VPC

A NACL must be attached to each subnet because if a subnet is not associated with one

A

No traffic goes IN or OUT

39
Q

VPC

NACL rules - allow traffic in but outbound rules are not created automatically

A

Stateless

40
Q

VPC

Lobsters - single NACL to single

A

Subnet

41
Q

VPC

Connection between two VPCs that enables you to route traffic between them using private IP addresses via a direct network route

A

VPC Peering

42
Q

VPC - Peering

Instances in either VPC can communicate with each other as if they are within the same

A

Network

43
Q

VPC - Peering

You can create connections between your own VPCs or with a VPC in another account within a

A

SINGLE region

44
Q

VPC - Peering

AWS uses existing infrastructure of a VPC to create peering connections

A

It is not a gateway nor a VPN and does not rely on separate hardware

45
Q

VPC - Peering

There is not single point of failure for communication

A

Nor any bandwidth bottleneck

46
Q

VPC - Peering

Peering between 1 VPC to get to another is not allowed

A

Transitive Peering

47
Q

VPC - Peering

(1 to 1) Hub and

A

Spoke

48
Q

VPC - Peering

Be mindful of IPS in each VPC - if multiple VPCs have the same IP blocks

A

They will not be able to communicate

49
Q

VPC - Peering

Peering is allowed with other AWS accounts and

A

your own network

50
Q

VPC

Subnets per VPC

NiSS

A

200

51
Q

VPC

Customer Gateways per region

LoZer

A

50

52
Q

VPC

VPN connections per region

LoZer

A

50

53
Q

VPC

VPN connections per VPC per virtual private gateway

DoS

A

10

54
Q

VPC

Route tables per VPC

Lo

A

5