Courseiva

SOA-C02 Networking and Content Delivery Practice Question

A company has multiple VPCs in the same account that need to communicate with each other. The VPCs are in the same region. Which solution provides the simplest and most scalable connectivity?

⚠ Common exam trap

A common mix-up: candidates confuse VPC Peering as the simplest solution for a few VPCs, but the question emphasizes scalability, and Transit Gateway is the only option that provides transitive routing without a full mesh of connections.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Create a Transit Gateway and attach all VPCs.

AWS Transit Gateway acts as a central hub that allows you to attach multiple VPCs and manage inter-VPC routing through a single gateway, simplifying connectivity and scaling easily as you add more VPCs. It eliminates the need for complex mesh or star configurations and supports transitive routing, making it the simplest and most scalable solution for multi-VPC communication within the same region.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Set up AWS Direct Connect and route through a single VPC.

    Why it's wrong here

    AWS Direct Connect provides a dedicated, private network connection from your on-premises data center to AWS; it is designed for hybrid connectivity, not for inter-VPC routing. Even if you route traffic through a single VPC via a virtual interface, other VPCs are not automatically connected, and that VPC would need to act as a central router or appliance, creating a bottleneck and failing to provide native transitive routing. Therefore, Direct Connect is not a valid solution for connecting multiple VPCs in the same account.

  • ✗

    Use AWS PrivateLink to connect the VPCs.

    Why it's wrong here

    AWS PrivateLink allows you to expose specific services in a VPC to other VPCs using interface endpoints backed by a Network Load Balancer, but it only provides one-way, service-specific access rather than general IP connectivity between VPCs. Each service must be individually configured as a provider endpoint and consumer endpoint, and arbitrary traffic between resources in the VPCs is not supported. PrivateLink is therefore unsuitable for connecting all VPCs to each other for broad internal communication.

  • ✓

    Create a Transit Gateway and attach all VPCs.

    Why this is correct

    AWS Transit Gateway (TGW) is a regional hub-and-spoke router that centrally manages connectivity between multiple VPCs and on-premises networks via a single attachment per VPC. After attaching all VPCs to the transit gateway, you configure route tables and propagate routes so that traffic can flow transitively between any attached VPC, eliminating the need for a full mesh of peering connections. This approach scales to hundreds of VPCs, simplifies route management, and supports additional connections such as VPNs and Direct Connect, making it the correct choice.

  • ✗

    Create VPC Peering connections between each pair of VPCs.

    Why it's wrong here

    VPC peering is a point-to-point relationship between exactly two VPCs, and it does not support transitive routing; if VPC A peers with VPC B and VPC B peers with VPC C, traffic from A to C is not allowed. To connect multiple VPCs together, you would need to create a peering connection for every possible pair, resulting in N(N−1)/2 connections and requiring individual route table entries and updates. This full-mesh approach quickly becomes unmanageable and does not scale, so it is the wrong recommendation here.

About these practice questions

Courseiva writes every SOA-C02 question from scratch — 1,169 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This SOA-C02 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SOA-C02 exam.