AWS Certified Advanced Networking - Specialty

AWS Certified Advanced Networking - Specialty

Get started today

Ultimate access to all questions.


A company is deploying a two-tier web application in a new VPC within a single AWS Region. The VPC includes an internet gateway and four subnets: two public subnets with default routes to the internet gateway and two private subnets sharing a route table without a default route. The application will run on Amazon EC2 instances behind an external Application Load Balancer, with the EC2 instances requiring no direct internet access. The application will use an Amazon S3 bucket in the same Region for data storage, performing S3 GET and PUT API operations from the EC2 instances. A network engineer must design a VPC architecture that minimizes data transfer costs.

Which solution meets these requirements?