A VPC is connected to an on-premises data center via Site-to-Site VPN. EC2 instances in the VPC need to resolve DNS names for example.com using the on-premises DNS servers. Which configuration satisfies this requirement?
Choose an answer
Tap an option to check your answer.
Correct answer: Create a Route 53 Resolver outbound endpoint, create a forwarding rule that sends queries for example.com to the on-premises DNS servers, and associate that rule with the VPC..
Why this is the answer
The correct solution is to use a Route 53 Resolver outbound endpoint. An outbound endpoint allows DNS queries originating from within the VPC to be forwarded to DNS resolvers outside of AWS, such as your on-premises DNS servers. By creating a forwarding rule for example.com and associating it with the VPC, EC2 instances will send these specific queries to the on-premises DNS servers via the outbound endpoint. An inbound endpoint is used for DNS queries originating from on-premises networks that need to resolve AWS resources within the VPC, which is the opposite of this requirement. The other incorrect options either misuse inbound endpoints or incorrectly describe the forwarding mechanism for outbound endpoints.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed