ANS-C00 Exam Details

  • Exam Code
    :ANS-C00
  • Exam Name
    :AWS Certified Advanced Networking - Specialty (ANS-C00)
  • Certification
    :Amazon Certifications
  • Vendor
    :Amazon
  • Total Questions
    :414 Q&As
  • Last Updated
    :May 30, 2026

Amazon ANS-C00 Online Questions & Answers

  • Question 301:

    A legacy, on-premises web application cannot be load balanced effectively. There are both planned and unplanned events that cause usage spikes to millions of concurrent users. The existing infrastructure cannot handle the usage spikes. The CIO has mandated that the application be moved to the cloud to avoid further disruptions, with the additional requirement that source IP addresses be unaltered to support network traffic-monitoring needs. Which of the following designs will meet these requirements?

    A. Use an Auto Scaling group of Amazon EC2 instances behind a Classic Load Balancer.
    B. Use an Auto Scaling group of EC2 instances in a target group behind an Application Load Balancer.
    C. Use an Auto Scaling group of EC2 instances in a target group behind a Classic Load Balancer.
    D. Use an Auto Scaling group of EC2 instances in a target group behind a Network Load Balancer.

  • Question 302:

    You have just deployed a website that utilizes CloudFront, ELB, and S3 to serve content. When users access your site, they are seeing broken image links. What is most likely the problem?

    A. There is no record in Route 53 pointing cdn.yourdomain.com to the CloudFront ALIAS.
    B. You need to create Origin Access Identity for CloudFront and add it to your bucket policy.
    C. The images in S3 are saved as .png instead of .jpg.
    D. There is no rule in your bucket policy allowing public access.

  • Question 303:

    You need to set up an Amazon Elastic Compute Cloud (EC2) instance for an application that requires the lowest latency and the highest packet-per-second network performance. The application will talk to other servers in a peered VPC. Which two of the following components should be part of the design? (Choose two.)

    A. Select an instance with support for single root I/O virtualization.
    B. Select an instance that has support for multiple ENAs.
    C. Ensure that the instance supports jumbo frames and set 9001 MTU.
    D. Select an instance with Amazon Elastic Block Store (EBS)-optimization.
    E. Ensure that proper OS drivers are installed.

  • Question 304:

    You have 99 routes in your dynamic BGP propagated route table and you wish to add 2 more: 10.1.0.0 and 10.3.0.0. You cannot modify or remove routes that have already been announced. What should you do?

    A. Summarize the two routes to combine them into one and advertise it.
    B. Just advertise them, the 100 route limit is a "soft limit" and will be expanded automatically.
    C. You cannot add these routes.
    D. Call AWS support to increase your route limit.

  • Question 305:

    To directly manage your CloudTrail security layer, you can use ____ for your CloudTrail log files

    A. SSE-S3
    B. SCE-KMS
    C. SCE-S3
    D. SSE-KMS

  • Question 306:

    What statement about LAGs is incorrect?

    A. If you create a new connection, you will have to fill out another LOA-CFA.
    B. You can pool connections with multiple speeds to create one faster speed.
    C. You will receive 1 LOA-CFA with a page for each connection.
    D. All connections in the LAG must terminate at the same DX endpoint.

  • Question 307:

    Which statement is NOT true about accessing remote AWS region in the US by your AWS Direct Connect which is located in the US?

    A. To connect to a VPC in a remote region, you can use a virtual private network (VPN) connection over your public virtual interface.
    B. To access public resources in a remote region, you must set up a public virtual interface and establish a border gateway protocol (BGP) session.
    C. If you have a public virtual interface and established a BGP session to it, your router learns the routes of the other AWS regions in the US.
    D. Any data transfer out of a remote region is billed at the location of your AWS Direct Connect data transfer rate.

  • Question 308:

    The Web Application Development team is worried about malicious activity from 200 random IP addresses. Which action will ensure security and scalability from this type of threat?

    A. Use inbound security group rules to block the IP addresses.
    B. Use inbound network ACL rules to block the IP addresses.
    C. Use AWS WAF to block the IP addresses.
    D. Write iptables rules on the instance to block the IP addresses.

  • Question 309:

    Your business has implemented a highly available Direct Connect system that makes use of two datacenters. Each data center is equipped with one LAG with two connections and one ordinary DX connection. How many LOAs will be completed in total if your organization successfully completes an order for the addition of a new connection to each of the LAGs?

    A. 1
    B. 11
    C. 2
    D. 6

  • Question 310:

    When using AWS Config, which two items are stored on S3 as a part of its operation?

    A. Configuration Items and Configuration History
    B. Configuration Recorder and Configuration Snapshots
    C. Configuration History and Configuration Snapshots
    D. Configuration Snapshots and Configuration Streams

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Amazon exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your ANS-C00 exam preparations and Amazon certification application, do not hesitate to visit our Vcedump.com to find your solutions here.