โ† All AWS Flashcard Decks

AWS Networking and Content Delivery Flashcards

7 cards from real AWS practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 AWS Networking and Content Delivery flashcards as text
  1. Which AWS service would you use to protect your web applications from common web exploits like SQL injection and cross-site scripting at the edge?

    Answer: AWS WAF

    AWS WAF (Web Application Firewall) lets you create rules that block common web exploits and can be deployed in front of CloudFront, ALB, API Gateway, and AppSync.

  2. What is the key advantage of using a VPC with multiple Availability Zones for your networking architecture?

    Answer: Higher fault tolerance against single AZ failures

    Distributing resources across multiple AZs ensures your application remains available even if one AZ experiences an outage.

  3. Which CloudFront origin type allows you to use an HTTP server running on an EC2 instance or any publicly accessible HTTP server as a content source?

    Answer: Custom Origin

    A Custom Origin in CloudFront can be any HTTP or HTTPS server, including EC2 instances, Elastic Load Balancers, or any other web server accessible via the internet.

  4. What happens to traffic between instances in the same VPC subnet when no route table entry exists for that CIDR range?

    Answer: Traffic uses local route for VPC CIDR automatically

    Every route table in a VPC automatically has a local route that covers the entire VPC CIDR block, enabling all instances within the VPC to communicate with each other.

  5. A company needs to migrate their application to AWS but must keep the same IP address range they use on-premises. Which VPC feature enables this?

    Answer: Bring Your Own IP (BYOIP)

    BYOIP allows companies to bring their own publicly routable IPv4 or IPv6 address ranges to AWS and use them in their VPCs.

  6. Which feature of AWS Network Load Balancer makes it suitable for handling millions of requests per second with ultra-low latency?

    Answer: Operates at Layer 4 (TCP/UDP) without connection termination overhead

    NLB operates at Layer 4 and can handle extreme levels of traffic with ultra-low latency because it doesn't need to inspect HTTP headers or manage complex routing rules.

  7. What is the purpose of Route 53's Geoproximity routing policy with a bias value?

    Answer: Shift traffic between resources by expanding or shrinking the geographic region each resource covers

    The bias value in Geoproximity routing expands (positive bias) or shrinks (negative bias) the geographic region from which Route 53 routes traffic to a resource.