AWS Advanced Networking – Specialty
Certification (ANS-C01) Exam Practice
Questions And Correct Answers
(Verified Answers) Plus Rationales 2027
Q&A | Instant Download Pdf
Questions 1–50
1. A company hosts a globally distributed application on Amazon EC2
instances behind an Application Load Balancer. Users in multiple continents
experience inconsistent latency when connecting to the application. Which
AWS service should be used to improve global network performance while
providing static anycast IP addresses?
A. Amazon CloudFront
B. AWS Global Accelerator
C. Amazon Route 53 Resolver
D. AWS Transit Gateway
Answer: B. AWS Global Accelerator
,Rationale: AWS Global Accelerator provides static anycast IP addresses
and routes users through the AWS global network to healthy regional
endpoints, improving availability and network performance for global
applications.
2. A company wants to distribute static and dynamic web content globally
while reducing latency for users. Which service is most appropriate?
A. AWS Direct Connect
B. AWS Transit Gateway
C. Amazon CloudFront
D. AWS PrivateLink
Answer: C. Amazon CloudFront
Rationale: Amazon CloudFront is a content delivery network that caches
content at edge locations and accelerates delivery to geographically
distributed users.
3. An organization needs private DNS names that are resolvable only from
VPCs associated with the DNS zone. Which Route 53 feature should be
used?
,A. Public hosted zone
B. Private hosted zone
C. Route 53 Resolver inbound endpoint
D. Route 53 domain registration
Answer: B. Private hosted zone
Rationale: A Route 53 private hosted zone provides DNS resolution for
domains within associated VPCs without exposing those DNS records
publicly.
4. A company has an on-premises DNS environment and wants DNS queries
from AWS VPCs to be forwarded to on-premises DNS servers. Which
solution should be implemented?
A. Route 53 Resolver inbound endpoint
B. Route 53 Resolver outbound endpoint
C. Amazon CloudFront
D. AWS Global Accelerator
Answer: B. Route 53 Resolver outbound endpoint
Rationale: An outbound Resolver endpoint allows DNS queries originating
in AWS VPCs to be forwarded to DNS resolvers outside AWS.
, 5. An enterprise wants on-premises DNS servers to resolve private DNS
names hosted in Route 53 private hosted zones. Which solution is
appropriate?
A. Route 53 Resolver inbound endpoint
B. Route 53 Resolver outbound endpoint
C. CloudFront origin access control
D. Internet gateway
Answer: A. Route 53 Resolver inbound endpoint
Rationale: An inbound Resolver endpoint receives DNS queries from
networks outside the VPC and allows them to resolve private Route 53 DNS
records.
6. Which AWS service provides centralized connectivity between multiple
VPCs and on-premises networks using a hub-and-spoke architecture?
A. VPC peering
B. AWS Transit Gateway
C. AWS PrivateLink
D. Internet Gateway
Certification (ANS-C01) Exam Practice
Questions And Correct Answers
(Verified Answers) Plus Rationales 2027
Q&A | Instant Download Pdf
Questions 1–50
1. A company hosts a globally distributed application on Amazon EC2
instances behind an Application Load Balancer. Users in multiple continents
experience inconsistent latency when connecting to the application. Which
AWS service should be used to improve global network performance while
providing static anycast IP addresses?
A. Amazon CloudFront
B. AWS Global Accelerator
C. Amazon Route 53 Resolver
D. AWS Transit Gateway
Answer: B. AWS Global Accelerator
,Rationale: AWS Global Accelerator provides static anycast IP addresses
and routes users through the AWS global network to healthy regional
endpoints, improving availability and network performance for global
applications.
2. A company wants to distribute static and dynamic web content globally
while reducing latency for users. Which service is most appropriate?
A. AWS Direct Connect
B. AWS Transit Gateway
C. Amazon CloudFront
D. AWS PrivateLink
Answer: C. Amazon CloudFront
Rationale: Amazon CloudFront is a content delivery network that caches
content at edge locations and accelerates delivery to geographically
distributed users.
3. An organization needs private DNS names that are resolvable only from
VPCs associated with the DNS zone. Which Route 53 feature should be
used?
,A. Public hosted zone
B. Private hosted zone
C. Route 53 Resolver inbound endpoint
D. Route 53 domain registration
Answer: B. Private hosted zone
Rationale: A Route 53 private hosted zone provides DNS resolution for
domains within associated VPCs without exposing those DNS records
publicly.
4. A company has an on-premises DNS environment and wants DNS queries
from AWS VPCs to be forwarded to on-premises DNS servers. Which
solution should be implemented?
A. Route 53 Resolver inbound endpoint
B. Route 53 Resolver outbound endpoint
C. Amazon CloudFront
D. AWS Global Accelerator
Answer: B. Route 53 Resolver outbound endpoint
Rationale: An outbound Resolver endpoint allows DNS queries originating
in AWS VPCs to be forwarded to DNS resolvers outside AWS.
, 5. An enterprise wants on-premises DNS servers to resolve private DNS
names hosted in Route 53 private hosted zones. Which solution is
appropriate?
A. Route 53 Resolver inbound endpoint
B. Route 53 Resolver outbound endpoint
C. CloudFront origin access control
D. Internet gateway
Answer: A. Route 53 Resolver inbound endpoint
Rationale: An inbound Resolver endpoint receives DNS queries from
networks outside the VPC and allows them to resolve private Route 53 DNS
records.
6. Which AWS service provides centralized connectivity between multiple
VPCs and on-premises networks using a hub-and-spoke architecture?
A. VPC peering
B. AWS Transit Gateway
C. AWS PrivateLink
D. Internet Gateway