Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Aviatrix ACE Exam - Topic 3 Question 62 Discussion

ACE Inc. currently uses AWS as their primary cloud provider with a strong desire to expand to Azure and GCP. IT team has strict security and control requirements from different business units that require isolation and control from each other. The different business units want* to own their own transit architecture* the ability to control firewall rules for their own application* to not share same transit with other business units but have ability to connect to other business units if neededThe architecture board has mandated that there needs to be a single design pattern that accommodates above requirements irrespective of the public cloud vendor being used.Choose the best design option to meet above needs. Each option presents a complete solution.
C) Use Aviatrix repeatable transit architecture integrated with 3rd party Next Gen Firewalls. Deploy same transit architecture multiple times in a region and use same design and normalized datapath for AWS, Azure, GCP and OCI. Provide NextGen firewalls in each transit so the business units can control their own firewalls and allow connectivity in and out of their transit.
A) Use AWS Transit Gateway (TGW). Deploy several TGWs in each region and peer them together as needed. Use TGW VPN to build IPSec tunnels to Azure Virtual WAN and Google Cloud VPN.
B) Use Azure Virtual WAN to connect all the branches, users and VNets together. Insert a centralized 3rd party firewall in Virtual WAN to control traffic. Use Azure Gateway to build IPSec tunnels to AWS Transit Gateway and Google Cloud VPN.
D) Use GCP global routing which allows connecting all GCP VPCs. Use Google Cloud VPN to build tunnels to AWS TGW and Azure Virtual WAN.

Aviatrix ACE Exam - Topic 3 Question 62 Discussion

Actual exam question for Aviatrix's ACE exam
Question #: 62
Topic #: 3
[All ACE Questions]

ACE Inc. currently uses AWS as their primary cloud provider with a strong desire to expand to Azure and GCP. IT team has strict security and control requirements from different business units that require isolation and control from each other. The different business units want

* to own their own transit architecture

* the ability to control firewall rules for their own application

* to not share same transit with other business units but have ability to connect to other business units if needed

The architecture board has mandated that there needs to be a single design pattern that accommodates above requirements irrespective of the public cloud vendor being used.

Choose the best design option to meet above needs. Each option presents a complete solution.

Show Suggested Answer Hide Answer
Suggested Answer: C

As here AWS is Primary Cloud Provider.

With Aviatrix You can Bring your own firewall to the cloud. Pre-integrated with Next-Generation Firewalls

to enable inline inspection of VPC traffic to maximize security and performance.

Multicloud and Multi-Region is the new normal: With Aviatrix You can support your business needs for onprem and multiple cloud providers. Instead of managing different cloud vendor gateways, Aviatrix NextGeneration Transit Network lets you abstract away the networking differences between AWS, Azure, Google

and Private Cloud.


Contribute your Thoughts:

0/2000 characters

Currently there are no comments in this discussion, be the first to comment!


Save Cancel