ANS-C00 Exam Details

  • Exam Code
    :ANS-C00
  • Exam Name
    :AWS Certified Advanced Networking - Specialty (ANS-C00)
  • Certification
    :Amazon Certifications
  • Vendor
    :Amazon
  • Total Questions
    :414 Q&As
  • Last Updated
    :May 30, 2026

Amazon ANS-C00 Online Questions & Answers

  • Question 221:

    You are configuring a VPN to AWS for your company. You have configured the VGW and CGW. You have created the VPN. You have also run the necessary commands on your router. You allowed all TCP and UDP traffic between your datacenter and your VPC. The tunnel still doesn't come up. What is the most likely reason?

    A. You forgot to turn on route propagation in the route table.
    B. You do not have a public ASN.
    C. Your advertised subnet is too large.
    D. You haven't added protocol 50 to your firewall.

  • Question 222:

    You need to create a subnet in a VPC that supports 1000 hosts. You need to be as accurate as possible since you run a very large company. What CIDR should you use?

    A. /16
    B. /24
    C. /7
    D. /22

  • Question 223:

    You have a hybrid infrastructure and you have configured your own DNS server on an EC2 instance in your 10.1.3.0/24 subnet. This subnet resides on the VPC 10.1.0.0/16. You need your data center to be able to resolve Route 53 queries in your private hosted zone. What do you need to do to accomplish this?

    A. Disable the source/destination check flag for the DNS instance.
    B. Configure your DNS server to forward queries for the private hosted zone to 10.1.3.2.
    C. Configure your DNS server to forward queries for the private hosted zone to 10.1.0.2.
    D. Configure the VPC DHCP option set in the VPC to point to the EC2 DNS server.

  • Question 224:

    A Network Engineer has enabled VPC Flow Logs to troubleshoot an ICMP reachability issue for an echo reply from an Amazon EC2 instance. The flow logs reveal an ACCEPT record for the request from the client to the EC2 instance, and a REJECT record for the response from the EC2 instance to the client.

    What is the MOST likely reason for there to be a REJECT record?

    A. The security group is denying inbound ICMP.
    B. The network ACL is denying inbound ICMP.
    C. The security group is denying outbound ICMP.
    D. The network ACL is denying outbound ICMP.

  • Question 225:

    What does the term "statistics" mean with respect to CloudWatch metrics?

    A. Time of a metric collection
    B. Data aggregation over a specific period of time
    C. Status of a metric
    D. Unit of a metric

  • Question 226:

    A computing team is evaluating whether to place a high performance computing (HPC) application in AWS. The team is concerned about application performance and wants to know what options are available to increase networking performance.

    Which of the following changes would increase performance for this application? (Choose two.)

    A. Place the application across many smaller instances to achieve higher total throughput.
    B. Increase the MTU of the VPC to 9001.
    C. Enable an MTU of 9001 in the application's operating system.
    D. Enable enhanced networking on the instances.
    E. Deploy the application in two Availability Zones and insert them in one placement group.

  • Question 227:

    You have a server that serves www, FTP, and mail. You need to access this server using www.yourname.com, ftp.yourname.com, and mail.yourname.com. You want to ensure an IP change results in the least number of other changes. What is the best solution?

    A. Create PTR records and point the IP address of the server back to www, ftp, and mail.
    B. Create an A record pointing to the server's IP address and create CNAME records for www, ftp, and mail and point those to the A record.
    C. Create an A record for www, ftp and mail, and point it to the ALIAS of the server.
    D. Create CNAME records for www, ftp, and mail and point those to the A record already provided to the instance by AWS.

  • Question 228:

    A space exploration company owns a series of telescopes that capture a large number of images and data of the night sky. The images and data are processed on an application hosted on AWS Fargate in a target group assigned to an Application Load Balancer (ALB). The application is made available through the address https://space.example.com.

    Scientists require another custom-built application hosted on several Amazon EC2 instances within an Auto Scaling group. This application will be made available from the address https://space.example.com/meteor. The company needs a solution that can automatically scale from a small number of requests overnight to a large number of requests for a future meteor shower.

    What is the MOST operationally efficient solution that meets these requirements?

    A. Update the existing target group with the new EC2 instances. Update the application's ALB by adding a listener rule that redirects /meteor to the newly added EC2 instances.
    B. Create a new target group. Configure the Auto Scaling group of the EC2 instances to use the target group. Update the ALB by adding a listener rule that redirects /meteor to the new target group.
    C. Create a Network Load Balancer (NLB). Configure the NLB to listen on two ports. Configure a target group for one port to deliver all IP traffic to the Auto Scaling group to process the custom images. Configure a target group for the second port to deliver all IP traffic to Fargate. Use path-based routing in the ALB to route traffic for the URL prefix /meteor to the first target group. Route all other paths to the second target group.
    D. Place the ALB behind an Amazon CloudFront distribution. Create a Lambda@Edge function that parses the request URI and adds the path-pattern header with the IP addresses of the EC2 instances to any request for /meteor. Add a listener rule to the ALB that looks for the HTTP header and uses the IP addresses of the EC2 instances to forward the traffic.

  • Question 229:

    You have several Amazon Glacier vaults you would like to monitor. How might you monitor those vaults?

    A. Create a custom AWS Config rule.
    B. Use an AWS master Config rule.
    C. Use an AWS managed Config rule.
    D. Create a KMS policy and attach it to your Amazon Glacier vault.

  • Question 230:

    In Amazon CloudFront, which of the following is true of Smooth Streaming?

    A. It is a Microsoft format for streaming of media files.
    B. It is a CloudFront format for streaming of media files in RTMP distribution.
    C. It is the Adobe format for streaming of media files.
    D. It is a CloudFront format for streaming of media files in web distribution.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Amazon exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your ANS-C00 exam preparations and Amazon certification application, do not hesitate to visit our Vcedump.com to find your solutions here.