ANS-C01 exam dumps

ANS-C01 practice question 379 of 513

AWS Certified Advanced Networking - Specialty. Expert level, Amazon Web Services. Free question with the correct answer and a full explanation.

ANS-C01 Question 379

Select 2

A company is facing intermittent issues with one of its web applications running on Amazon EC2 instances in a private subnet of a VPC. Users are reporting slow response times and occasional failures. The company needs to identify the root cause of the issue by analyzing network traffic and understanding any anomalies. Which combination of AWS tools should the company use to troubleshoot this issue effectively?

  1. A

    Amazon CloudWatch Logs to monitor application logs and identify anomalies.

  2. B

    VPC Flow Logs to capture information about the IP traffic going to and from network interfaces.

  3. C

    VPC Traffic Mirroring to capture and analyze packet-level network traffic.

  4. D

    AWS Trusted Advisor to assess security and performance issues in the VPC.

  5. E

    Amazon CloudWatch Alarms to alert on abnormal network latency metrics.

Show answer and explanation

Correct answers: B, C

Explanation

To troubleshoot network-related issues effectively, the combination of VPC Flow Logs and VPC Traffic Mirroring is most appropriate. VPC Flow Logs provide metadata about network traffic, helping identify patterns or anomalies at a high level. VPC Traffic Mirroring complements this by capturing packet-level traffic, enabling deep analysis to pinpoint the root cause of issues such as slow response times or failures. While CloudWatch Logs, Trusted Advisor, and CloudWatch Alarms are useful in other scenarios, they do not directly address the need for network traffic analysis.

  • A. Incorrect.

    Amazon CloudWatch Logs is useful for monitoring application logs but does not provide insights into network-level details such as packet inspection or IP traffic analysis. While helpful, it is not the best tool for network troubleshooting in this scenario.

  • B. Correct.

    VPC Flow Logs capture IP traffic metadata, such as source and destination IP addresses, ports, and protocols. This is a key tool for identifying network traffic patterns and anomalies at the VPC level.

  • C. Correct.

    VPC Traffic Mirroring allows you to capture packet-level traffic from EC2 instances, making it ideal for deep network analysis and debugging issues like intermittent slow response times or failures.

  • D. Incorrect.

    AWS Trusted Advisor provides recommendations for improving security, performance, and cost optimization but does not offer tools for capturing or analyzing network traffic.

  • E. Incorrect.

    Amazon CloudWatch Alarms can notify you of anomalies in metrics but does not provide granular details about the network traffic itself or allow for packet-level analysis.

Timed practice exam

Take a ANS-C01 practice test under exam conditions

65 questions in 170 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam