QuestionQ1

Network Design

An insurance company plans to migrate workloads from its on-premises data center to the AWS Cloud. The company needs end-to-end domain name resolution, including bi-directional DNS resolution between AWS and the existing on-premises environments. The workloads will be migrated into multiple VPCs, have dependencies on one another, and will not all migrate at the same time.

Which solution fulfills these requirements?

Explanation

Route 53 Resolver inbound endpoints allow on-premises DNS resolvers to forward AWS private-domain queries into AWS, while outbound endpoints and Resolver forwarding rules allow VPC workloads to resolve on-premises domains. A private hosted zone must be associated with the VPC that hosts the inbound endpoint for that endpoint to resolve records in the zone. Sharing Resolver rules through AWS Resource Access Manager lets the application VPCs use the centralized outbound DNS-forwarding configuration.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!