A retail company is running its service on AWS. The company's architecture includes Application Load Balancers (ALBs) in public subnets. The ALB target groups are configured to send traffic to backend Amazon EC2 instances in private subnets. These backend EC2 instances can call externally hosted services over the internet by using a NAT gateway.
The company has noticed in its billing that NAT gateway usage has increased significantly. A network engineer needs to find out the source of this increased usage.
Which options can the network engineer use to investigate the traffic through the NAT gateway? (Choose two.)
The correct solution is to use an S3 interface endpoint and an on-premises DNS resolver. An S3 interface endpoint allows you to access Amazon S3 using private IP addresses within your VPC. An on-premises DNS resolver can be configured to forward the DNS queries for the S3 domain names to the S3 interface endpoint, so that the on-premises workloads can access Amazon S3 privately over the VPN connection. This solution is operationally efficient, as it does not require any additional infrastructure or changes to the existing workloads. The VPC workloads can continue to use the S3 gateway endpoint, which provides lower latency and higher throughput than the S3 interface endpoint.
Irene
9 months agoMila
9 months agoAsha
10 months agoCordelia
10 months agoVincenza
10 months agoNatalie
10 months agoNovella
11 months agoChauncey
11 months agoElouise
11 months agoLuis
11 months agoGilma
11 months agoLuis
11 months agoShannan
11 months agoMitsue
11 months agoAracelis
11 months agoLouisa
11 months agoMilly
11 months agoJosefa
1 year agoSarah
1 year agoTasia
1 year agoElza
1 year agoEvangelina
1 year agoDoyle
1 year agoOsvaldo
1 year agoSharika
1 year agoFlorinda
1 year agoMakeda
1 year agoKenneth
1 year agoWillie
1 year agoGlory
1 year agoMakeda
1 year agoAlita
1 year agoSvetlana
1 year agoEvan
1 year ago