ANS-C00 Exam Details

  • Exam Code
    :ANS-C00
  • Exam Name
    :AWS Certified Advanced Networking - Specialty (ANS-C00)
  • Certification
    :Amazon Certifications
  • Vendor
    :Amazon
  • Total Questions
    :414 Q&As
  • Last Updated
    :May 30, 2026

Amazon ANS-C00 Online Questions & Answers

  • Question 241:

    Your Amazon Kinesis application receives data streams from thousands of devices. The data is then stored in an on-premises Hadoop cluster. You are concerned about historical data that shows periods of sustained traffic between 1 Gbps and 2 Gbps during peaks. You must ensure that you have secure, fault- tolerant connectivity between Amazon Kinesis and your data center.

    What should you implement to address these needs?

    A. Deploy a single 1-Gbps Direct Connect connection with a VPN backup.
    B. Deploy three 1-Gbps Direct Connect connections.
    C. Deploy two 1-Gbps Direct Connect connections.
    D. Set up an IPsec VPN connection over Direct Connect with two tunnels.

  • Question 242:

    A gaming company is running an online multiplayer game in multiple AWS Regions. The company needs traffic from its end users to be routed to the Region that is closest to the end users geographically. When maintenance occurs in a Region, traffic must be routed to the next closest Region with no changes to the IP addresses being used as connections by the end users.

    Which solution will meet these requirements?

    A. Create an Amazon CloudFront distribution in front of all the Regions.
    B. Use an Amazon Route 53 geoproximity routing policy to navigate traffic to the closest Region.
    C. Use an Amazon Route 53 geolocation routing policy to navigate traffic to the closest Region.
    D. Configure AWS Global Accelerator in front of all the Regions.

  • Question 243:

    A company uses an AWS Site-to-Site VPN to connect its corporate network. The company recently added an AWS Direct Connect connection. A network engineer wants all traffic to use the Direct Connect connection, and for the VPN to be used as backup. However, after the Direct Connect connection was added, traffic continued to pass through the VPN connection.

    What should the network engineer do to route the traffic through the Direct Connect connection?

    A. Add routes to the VPC route tables that specify the Direct Connect connection.
    B. Set local preference BGP community tags on the on-premises router.
    C. Advertise the same network routes over the Direct Connect connection and VPN connection.
    D. Ensure the Direct Connect connection AS_PATH is longer than the VPN connection AS_PATH.

  • Question 244:

    You need to find the subnet, the security group and the VPC that your instance is associated with. You only have access to the terminal of an instance with an admin role attached. What is the first part of the command you would use?

    A. aws ec2 describe-network-acl
    B. aws ec2 describe-instances
    C. aws vpc describe-all
    D. aws ec2 describe-security-groups

  • Question 245:

    You are using the CLI to assign multiple IP addresses to interfaces. The operation fails. What is the most likely reason?

    A. You cannot assign IP addresses in the CLI.
    B. You can only assign 5 IP addresses at a time through the CLI.
    C. One or more of the IP addresses could not be assigned.
    D. All of the IP addresses could not be assigned.

  • Question 246:

    Which AWS service is used within an AWS Config Rule to perform the logic evaluation of that rule?

    A. Inspector
    B. WAF
    C. Lambda
    D. SWF

  • Question 247:

    Your company has just completed a transition to IPv6 and has deployed a website on a server. You were able to download software on the instance without an issue. This website is deployed using IPv6, but the public is not able to access it. What should you do to fix this problem?

    A. Add an internet gateway for the instance.
    B. Add an egress-only internet gateway.
    C. Add an inbound rule to your security group that allows inbound traffic on port 80 for ::/0.
    D. Add an inbound rule to your security group that allows inbound traffic on port 80 for 0.0.0.0/0.

  • Question 248:

    You have 4 Direct Connect connections from your datacenter. Site A advertises 172.16.0.0/16 AS 65000, Site B advertises 172.16.0.128/25 AS 65000 65000 65000, Site C advertises 172.0.0.0/8 AS 65000 and Site D advertises 172.16.0.0/24 AS 65000. Which site will AWS choose to reach your network?

    A. Site A: 172.16.0.0/16 AS 65000
    B. Site B: 172.16.0.128/25 AS 65000 65000 65000
    C. Site C: 172.0.0.0/8 AS 65000
    D. Site D: 172.16.0.0/24 AS 65000

  • Question 249:

    What is the minimum number of subnets for an RDS subnet group?

    A. 3
    B. 4
    C. 1
    D. 2

  • Question 250:

    A logistics company has deployed a hybrid environment that has multiple VPCs in both the us-east-1 Region and the af-south-1 Region. The on-premises data center is connected to us-east-1 through an AWS Direct Connect connection. The

    Direct Connect connection is connected to a Direct Connect gateway that is associated with a transit gateway. The transit gateway is attached to all the VPCs in us-east-1.

    An application that is deployed in af-south-1 requires access to a database in the data center. The application also requires access to file storage in a VPC in us-east-1.

    Which solution will meet these requirements with the LOWEST latency?

    A. Create a transit gateway in af-south-1, and attach the VPCs. Create a transit gateway peering connection between the transit gateways.
    B. Create a Direct Connect connection in af-south-1, and attach the VPCs with a Direct Connect gateway and a transit gateway. Create an AWS Site-to-Site VPN connection over the internet between the Direct Connect connections.
    C. Create a transit gateway in af-south-1, and attach the VPCs. Associate the transit gateway in af-south-1 with the Direct Connect gateway in us-east-1.
    D. Create inter-Region VPC peering connections between the VPCs in each Region. Use the transit gateway attachments in us-east-1 to access the database in the data center.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Amazon exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your ANS-C00 exam preparations and Amazon certification application, do not hesitate to visit our Vcedump.com to find your solutions here.