For IndividualsFor Educators
ExpertMinds LogoExpertMinds
ExpertMinds

Ace your certifications with Practice Exams and AI assistance.

  • Browse Exams
  • For Educators
  • Blog
  • Privacy Policy
  • Terms of Service
  • Cookie Policy
  • Support
  • AWS SAA Exam Prep
  • PMI PMP Exam Prep
  • CPA Exam Prep
  • GCP PCA Exam Prep

© 2026 TinyHive Labs. Company number 16262776.

    PracticeAWS Solutions Architect Professional (SAP-C02)AWS Solutions Architect Professional SAP-C02 Practice Exam 5Question 41
    Hard1 markMultiple Choice
    Domain 1.1: Network ConnectivityNetworkingRoute 53Hybrid

    AWS SAP-C02 · Question 41 · Domain 1.1: Network Connectivity

    A company is designing a hybrid DNS architecture. They have an on-premises data center and a multi-account AWS environment connected via AWS Direct Connect. On-premises servers need to resolve AWS private hosted zones (e.g., database.internal). AWS resources need to resolve on-premises hostnames (e.g., mainframe.corp.local). The solution must be highly available and centrally managed. Which combination of steps should the Architect take? (Select THREE)

    Answer options:

    A.

    Create an Amazon Route 53 Resolver Inbound Endpoint in a central shared services VPC.

    B.

    Create an Amazon Route 53 Resolver Outbound Endpoint in the central shared services VPC.

    C.

    Configure conditional forwarding rules on the on-premises DNS servers to point to the Inbound Endpoint IPs.

    D.

    Deploy EC2 instances running BIND DNS in the central VPC to act as forwarders.

    E.

    Configure Route 53 to use the on-premises DNS servers as the primary authoritative nameservers.

    F.

    Create a Route 53 public hosted zone for the on-premises domain.

    How to approach this question

    Identify the managed AWS service for hybrid DNS resolution.

    Full Answer

    Amazon Route 53 Resolver provides managed endpoints for hybrid DNS. An Inbound Endpoint allows on-premises DNS queries to resolve AWS private hosted zones. An Outbound Endpoint allows AWS resources to resolve on-premises domains. You configure conditional forwarding on your on-premises DNS to send AWS queries to the Inbound Endpoint, and you configure Route 53 Resolver rules to send on-premises queries to the Outbound Endpoint.

    Common mistakes

    Choosing to deploy custom EC2 DNS servers instead of using the managed Route 53 Resolver.
    Question 40All questionsQuestion 42

    Practice the full AWS Solutions Architect Professional SAP-C02 Practice Exam 5

    75 questions · hints · full answers · grading

    Sign up freeTake the exam

    More questions from this exam

    Q01A global enterprise is redesigning its AWS network architecture across 50 AWS accounts and 3 AWS ...HardQ02A company uses AWS Organizations to manage multiple accounts. The security team mandates that no ...MediumQ03A financial institution requires a disaster recovery strategy for its critical trading applicatio...HardQ04An enterprise is setting up a new multi-account AWS environment using AWS Control Tower. They nee...MediumQ05A company has a complex AWS environment with hundreds of linked accounts under AWS Organizations....Hard
    View all 75 questions →