Free AWS-SysOps Exam Braindumps (page: 61)

Page 60 of 121

A SysOps administrator is configuring AWS Client VPN to connect users on a corporate network to AWS resources that are running in a VPC. According to compliance requirements, only traffic that is destined for the VPC can travel across the VPN tunnel.
How should the SysOps administrator configure Client VPN to meet these requirements?

  1. Associate the Client VPN endpoint with a private subnet that has an internet route through a NAT gateway.
  2. On the Client VPN endpoint, turn on the split-tunnel option.
  3. On the Client VPN endpoint, specify DNS server IP addresses.
  4. Select a private certificate to use as the identity certificate for the VPN client.

Answer(s): B



A SysOps administrator is testing an application that is hosted on five Amazon EC2 instances. The instances run in an Auto Scaling group behind an Application Load Balancer (ALB). High CPU utilization during load testing is causing the Auto Scaling group to scale out. The SysOps administrator must troubleshoot to find the root cause of the high CPU utilization before the Auto Scaling group scales out.
Which action should the SysOps administrator take to meet these requirements?

  1. Enable instance scale-in protection.
  2. Place the instance into the Standby state.
  3. Remove the listener from the ALB.
  4. Suspend the Launch and Terminate process types.

Answer(s): D



A web application runs on Amazon EC2 instances behind an Application Load Balancer (ALB). The instances run in an Auto Scaling group across multiple Availability Zones. A SysOps administrator notices that some of these EC2 instances show up as healthy in the Auto Scaling group but show up as unhealthy in the ALB target group.
What is a possible reason for this issue?

  1. Security groups are not allowing traffic between the ALB and the failing EC2 instances.
  2. The Auto Scaling group health check is configured for EC2 status checks.
  3. The EC2 instances are failing to launch and failing EC2 status checks.
  4. The target group health check is configured with an incorrect port or path.

Answer(s): D



A SysOps administrator notices a scale up event for an Amazon EC2 Auto Scaling group. Amazon CloudWatch shows a spike in the RequestCount metric for the associated Application Load Balancer. The administrator would like to know the IP addresses for the source of the requests.
Where can the administrator find this information?

  1. Auto Scaling logs
  2. AWS CloudTrail logs
  3. EC2 instance logs
  4. Elastic Load Balancer access logs

Answer(s): D






Post your Comments and Discuss Amazon AWS-SysOps exam with other Community members:

AWS-SysOps Discussions & Posts