ANS-C00 Exam Details

  • Exam Code
    :ANS-C00
  • Exam Name
    :AWS Certified Advanced Networking - Specialty (ANS-C00)
  • Certification
    :Amazon Certifications
  • Vendor
    :Amazon
  • Total Questions
    :414 Q&As
  • Last Updated
    :May 30, 2026

Amazon ANS-C00 Online Questions & Answers

  • Question 261:

    An AWS Config rule can be set to be evaluated if a certain set of resources undergoes a configuration change. The set of resources to which the rule applies can be restricted by the rule's ____, which can include a combination of a resource type and a resource ID, for example.

    A. trigger
    B. domain
    C. manifest
    D. scope

  • Question 262:

    A company has a VPC in the us-west-1 Region and another VPC in the ap-southeast-2 Region. Network engineers set up an AWS Direct Connect connection from their data center to the us-east-1 Region. They create a private virtual interface (VIF) that references a Direct Connect gateway, which is then connected to virtual private gateways in both VPCs. When the setup is complete, the engineers cannot access resources in us-west-1 from ap-southeast-2.

    What should the network engineers do to resolve this issue?

    A. Add the subnet range for the VPCs in us-west-1 and ap-southeast-2 to the route tables for both VPCs. Add the Direct Connect gateway as a target.
    B. Configure the Direct Connect gateway to route traffic between the VPCs in ap-southeast-2 and us-west-2.
    C. Establish a VPC peering connection between the VPCs in ap-southeast-2 and us-west-2. Add the subnet ranges to the routing tables.
    D. Create static routes in each VPC that point to the destination VPC with the virtual private gateway as the route target.

  • Question 263:

    What must be added to your web server configuration to view the true requesting IP address?

    A. X-Actual-IP
    B. X-Forwarded-Proto
    C. X-Amzn-Trace-ID
    D. X-Forwarded-For

  • Question 264:

    You received reports from clients in another time zone that they experienced an outage of your website several hours before you arrived at work. What two AWS services could prove crucial in figuring out what happened? (Choose two.)

    A. AWS Support
    B. CloudTrail
    C. CloudWatch
    D. Flow Logs

  • Question 265:

    You have several VPCs that are peered. Each VPC has several routes to different subnets. Over the years, your company has acquired many companies. You find that traffic destined for one VPC ends up going to another. What is the best way to remedy this?

    A. Move the route table entry for the proper VPC higher in the list.
    B. Adjust your routes so the proper VPC has a higher CIDR.
    C. Move the route table entry for the proper VPC lower in the list.
    D. Adjust your routes so the proper VPC has a lower CIDR.

  • Question 266:

    When configuring Active/Passive HA on VPN tunnels, choose the two best ways to configure this. (Choose two.)

    A. Keep both tunnels up.
    B. Configure AS_PATH prepending on one of the paths.
    C. Turn off one of the paths until you need it.
    D. Configure MED on one of the tunnels.

  • Question 267:

    Due to security requirements, all traffic must be encrypted between your VPC and your on-premises data center. You also want to maintain reliability. What two options will allow you to achieve this? (Choose two.)

    A. A Direct Connect connection with a Private VIF
    B. A VPN connection
    C. A Direct Connect connection with a Hosted VIF
    D. A Direct Connect connection with a Public VIF

  • Question 268:

    Your company is connecting one data center with one router to several VPCs and needs to access them transitively. What should you do?

    A. Create a VPN to one VPC and peer the others.
    B. This is not possible.
    C. Use a transit VPC with a VPN running on one or more EC2 instances to route traffic between the VPCs.
    D. Just connect; VPCs are transitive in nature.

  • Question 269:

    A department in your company has created a new account that is not part of the organization's consolidated billing family. The department has also created a VPC for its workload. Access is restricted by network access control lists to the department's on-premises private IP allocation. An AWS Direct Connect private virtual interface for this VPC advertises a default route to the company network. When the department downloads data from an Amazon Elastic Compute Cloud (EC2) instance in its new VPC, what are the associated charges?

    A. The company pays Internet Data Out charges.
    B. The company pays AWS Direct Connect Data Out charges.
    C. The department pays Internet Data Out charges.
    D. The department pays AWS Direct Connect Data Out charges.

  • Question 270:

    Your website is under attack and a malicious party is stealing large amounts of data. You have default NACL rules. Stopping the attack is the ONLY priority in this case. Which two commands should you use? (Choose two.)

    A. aws ec2 delete-network-acl-entry -network-acl-id acl-5fb84d47 -ingress -rule-number 32768
    B. aws ec2 delete-network-acl-entry -network-acl-id acl-5fb84d47 -egress rule-number 100
    C. aws ec2 delete-network-acl-entry -network-acl-id acl-5fb84d47 -ingress rule-number 100
    D. aws ec2 create-network-acl-entry -network-acl-id acl-5fb84d47 -ingress rule-number 100 -protocol -1 -port-range From =-1,To =-1 -cidr-block 0.0.0.0/0 -rule-action deny

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Amazon exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your ANS-C00 exam preparations and Amazon certification application, do not hesitate to visit our Vcedump.com to find your solutions here.