For IndividualsFor Educators
ExpertMinds LogoExpertMinds
ExpertMinds

Ace your certifications with Practice Exams and AI assistance.

  • Browse Exams
  • For Educators
  • Blog
  • Privacy Policy
  • Terms of Service
  • Cookie Policy
  • Support
  • AWS SAA Exam Prep
  • PMI PMP Exam Prep
  • CPA Exam Prep
  • GCP PCA Exam Prep

© 2026 TinyHive Labs. Company number 16262776.

    PracticeAWS Solutions Architect Professional (SAP-C02)AWS Solutions Architect Professional SAP-C02 Practice Exam 5Question 06
    Hard1 markMultiple Choice
    Domain 1.1: Network ConnectivityNetworkingCloud WANHybrid

    AWS SAP-C02 · Question 06 · Domain 1.1: Network Connectivity

    An architecture team is designing a hybrid network. They have two on-premises data centers and three AWS Regions. They need encrypted, high-throughput connectivity between all on-premises locations and all AWS Regions. The solution must support dynamic routing and minimize the number of point-to-point VPN connections to manage. Which architecture is BEST?

    Answer options:

    A.

    Deploy AWS Cloud WAN. Create a global core network. Attach AWS Site-to-Site VPN connections from the data centers to the closest Cloud WAN edge locations. Attach regional VPCs to the core network.

    B.

    Deploy a Transit Gateway in each Region. Peer all Transit Gateways. Create Site-to-Site VPNs from each data center to every Transit Gateway.

    C.

    Use AWS Direct Connect with MACsec encryption. Connect each data center to a Direct Connect Gateway. Associate the Direct Connect Gateway with Virtual Private Gateways in each Region.

    D.

    Deploy software SD-WAN appliances on EC2 instances in a central transit VPC. Route all global traffic through this VPC using VPC peering.

    How to approach this question

    Identify the service designed for global, managed wide-area networking.

    Full Answer

    A.Deploy AWS Cloud WAN. Create a global core network. Attach AWS Site-to-Site VPN connections from the data centers to the closest Cloud WAN edge locations. Attach regional VPCs to the core network.✓ Correct
    AWS Cloud WAN provides a central dashboard for making connections between your branch offices, data centers, and Amazon VPCs—building a global network with only a few clicks. It automatically handles the complex mesh routing.

    Common mistakes

    Choosing Transit Gateway peering, which requires more manual routing configuration for global hybrid setups.
    Question 05All questionsQuestion 07

    Practice the full AWS Solutions Architect Professional SAP-C02 Practice Exam 5

    75 questions · hints · full answers · grading

    Sign up freeTake the exam

    More questions from this exam

    Q01A global enterprise is redesigning its AWS network architecture across 50 AWS accounts and 3 AWS ...HardQ02A company uses AWS Organizations to manage multiple accounts. The security team mandates that no ...MediumQ03A financial institution requires a disaster recovery strategy for its critical trading applicatio...HardQ04An enterprise is setting up a new multi-account AWS environment using AWS Control Tower. They nee...MediumQ05A company has a complex AWS environment with hundreds of linked accounts under AWS Organizations....Hard
    View all 75 questions →