A company is adding a new approved external vendor that only supports IPv6 connectivity. The company's backend systems sit in the private subnet of an Amazon VPC. The company uses a NAT gateway to allow these systems to communicate with external vendors over IPv4. Company policy requires systems that communicate with external vendors to use a security group that limits access to only approved external vendors. The virtual private cloud (VPC) uses the default network ACL. The Systems Operator successfully assigns IPv6 addresses to each of the backend systems. The Systems Operator also updates the outbound security group to include the IPv6 CIDR of the external vendor (destination) . The systems within the VPC are able to ping one another successfully over IPv6. However, these systems are unable to communicate with the external vendor. What changes are required to enable communication with the external vendor?
A) Create an IPv6 NAT instance. Add a route for destination 0.0.0.0/0 pointing to the NAT instance.
B) Enable IPv6 on the NAT gateway. Add a route for destination ::/0 pointing to the NAT gateway.
C) Enable IPv6 on the internet gateway. Add a route for destination 0.0.0.0/0 pointing to the IGW.
D) Create an egress-only internet gateway. Add a route for destination ::/0 pointing to the gateway.
Correct Answer:
Verified
Q634: An on-premises application will be migrated to
Q635: An internal security audit of AWS resources
Q636: A company has a website that enables
Q637: A public retail web application uses an
Q638: A company's CISO has asked a Solutions
Q640: To abide by industry regulations, a Solutions
Q641: A company with multiple accounts is currently
Q642: A company wants to analyze log data
Q643: A solutions architect is designing a publicly
Q644: A company currently has data hosted in
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents