20+ practice questions focused on Networking and Content Delivery — one of the most tested topics on the AWS Certified SysOps Administrator Associate SOA-C02 exam. Each question includes a detailed explanation so you learn why the right answer is correct.
Start Networking and Content Delivery PracticeA company has deployed a web application on Amazon EC2 instances behind an Application Load Balancer (ALB). The application's IP addresses are used by a third-party service to allowlist traffic. The EC2 instances are part of an Auto Scaling group that may scale up and down. The SysOps administrator needs to ensure that the third-party service always has the current IP addresses of the ALB without requiring manual updates. Which solution should the administrator implement?
Explanation: AWS Global Accelerator and a Network Load Balancer (NLB) with Elastic IPs both provide static IP addresses in front of an ALB. The NLB can be placed in front of the ALB by setting the ALB as a target. This is a well-supported AWS pattern and satisfies the requirement without manual updates. Therefore, both A and D are correct.
A company has three VPCs in the same AWS region: VPC A (production), VPC B (development), and VPC C (shared services). The VPCs have overlapping CIDR blocks (e.g., VPC A: 10.0.0.0/16, VPC B: 10.0.0.0/16, VPC C: 10.1.0.0/16). The SysOps administrator needs to enable private IP communication between VPC A and VPC C, and between VPC B and VPC C, but not between VPC A and VPC B. The solution must also support a growing number of VPCs in the future. Which AWS service should be used?
Explanation: AWS Transit Gateway can handle VPCs with overlapping CIDR blocks by using separate route tables for each VPC attachment. This allows VPC A and VPC B to both communicate with VPC C while remaining isolated from each other. The service also scales easily as more VPCs are added. PrivateLink (option B) only provides access to specific services via VPC endpoints, not general private IP communication between all resources in the VPCs. VPC peering (option C) does not support overlapping CIDRs. Site-to-Site VPN (option D) is more complex and unnecessary for this use case.
A company has an Amazon VPC with public and private subnets. The private subnets host database instances that should not have direct internet access. However, the database instances need to download patches from an Amazon S3 bucket. The SysOps administrator needs to enable access to S3 from the private subnets without traversing the internet. Which solution should be used?
Explanation: A VPC endpoint for S3 of Gateway type allows private subnet resources to access S3 without traversing the internet by routing traffic through the AWS network. Adding a route to the S3 prefix list in the private route table directs S3-bound traffic to the endpoint, which is horizontally scaled and highly available. This solution meets the requirement of no direct internet access while enabling patch downloads from S3.
A company wants to host a static website using Amazon S3. The website files are stored in an S3 bucket. The SysOps administrator needs to make the website accessible via HTTP. Which action must be performed on the S3 bucket?
Explanation: To host a static website on Amazon S3, you must enable the 'Static website hosting' property on the bucket. This configures the bucket to serve HTTP responses for index and error documents, and provides a regional website endpoint (e.g., http://bucket-name.s3-website-region.amazonaws.com). Without this setting, the bucket only supports REST API access (via the S3 API endpoint), not standard HTTP browser requests.
A company has an Application Load Balancer (ALB) that routes traffic to targets in private subnets. The SysOps administrator needs to log detailed information about HTTP requests, including client IP, request path, and response time. Which ALB feature should be enabled?
Explanation: Access logs capture detailed information about each HTTP request processed by the ALB, including client IP, request path, response time, and many other fields. This feature stores the logs in an S3 bucket, providing a persistent, queryable record of all requests. CloudWatch metrics aggregate data but do not provide per-request details, making access logs the correct choice for the required granularity.
+15 more Networking and Content Delivery questions available
Practice all Networking and Content Delivery questions1. Baseline your knowledge
Start with 10 questions to gauge your current understanding of Networking and Content Delivery. This tells you whether you need a concept refresher or just practice.
2. Review every explanation
For each question — right or wrong — read the full explanation. Understanding why an answer is correct is more valuable than knowing the answer itself.
3. Focus on exam traps
Networking and Content Delivery questions on the SOA-C02 frequently use trap wording. Look for subtle differences in answers that test your precision, not just general knowledge.
4. Reach 80% consistently
Do repeated sessions until you score 80%+ three times in a row. Then move to mixed-mode practice to test cross-topic recall under realistic conditions.
The exact number varies per candidate. Networking and Content Delivery is tested as part of the AWS Certified SysOps Administrator Associate SOA-C02 blueprint. Practicing with targeted Networking and Content Delivery questions ensures you can handle any format or difficulty that appears.
Yes. Courseiva provides free SOA-C02 practice questions across all exam topics and domains. The platform includes topic-based practice, mock exams, missed-question review, bookmarked questions, and readiness tracking — no account required.
Difficulty is subjective, but Networking and Content Delivery is a high-priority exam concept tested in multiple ways — direct recall, scenario analysis, and command-output interpretation. Consistent practice is the best way to build confidence.
Launch a full Networking and Content Delivery practice session with instant scoring and detailed explanations.
Start Networking and Content Delivery Practice →