A company has two AWS Direct Connect links: one terminating in us-east-1 and one in af-south-1. The company exchanges routes with AWS over BGP. How should BGP be configured so that the af-south-1 link acts as the backup (secondary) path to AWS?
Choose an answer
Tap an option to check your answer.
Correct answer: • On the Direct Connect link to us-east-1, configure BGP peering to use community tag 7224:7300 • On the Direct Connect link to af-south-1, configure BGP peering to use community tag 7224:7100 • On the Direct Connect BGP peer to us-east-1, set the local preference value to 200 • On the Direct Connect BGP peer to af-south-1, set the local preference value to 50.
Why this is the answer
To make the af-south-1 link a backup, you need to influence both inbound (to AWS) and outbound (from AWS) traffic. For inbound traffic to AWS, the 7224:7300 BGP community tag on the us-east-1 link signals AWS to prefer this path, while 7224:7100 on af-south-1 makes it less preferred. For outbound traffic from AWS to your network, a higher local preference value on your BGP peer for us-east-1 (200) makes your network prefer this path, while a lower value for af-south-1 (50) makes it secondary. The incorrect options either reverse the community tags, reverse the local preference values, or both, which would either make af-south-1 primary or not establish a clear primary/secondary relationship.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed