BrainyBeeBrainyBee
ExploreBlogStart Studying
HomeAWS Certified Advanced Networking - Specialty (ANS-C01)Exam Cram: AWS Hybrid Connectivity & Routing (ANS-C01)
Exam Cram Sheet920 words

Exam Cram: AWS Hybrid Connectivity & Routing (ANS-C01)

Implement routing and connectivity between on-premises networks and the AWS Cloud

Exam Cram: AWS Hybrid Connectivity & Routing

This sheet covers the critical knowledge for Domain 2.1: Implement routing and connectivity between on-premises networks and the AWS Cloud for the ANS-C01 exam.

Topic Weighting

DomainComponentEstimated Exam %
Domain 2: Network ImplementationTask 2.1: Hybrid Connectivity12% - 15%
Overall Domain 2All Implementation Tasks26%

[!IMPORTANT] This topic is foundational. Expect questions combining Direct Connect (DX) failover, BGP attribute manipulation, and Transit Gateway (TGW) integration.

Key Concepts Summary

1. Connectivity Methods

  • AWS Direct Connect (DX): Physical, dedicated connection. Provides consistent performance and bypasses the public internet. High cost, long lead time.
  • AWS Site-to-Site VPN: IPsec tunnels over the public internet. Quick to deploy, encrypted, but subject to internet latency/jitter.
  • Transit Gateway (TGW): A hub-and-spoke router that simplifies connecting multiple VPCs and on-premises networks.

2. Border Gateway Protocol (BGP)

  • eBGP: Used between your on-premises ASN and AWS (usually VGW or TGW).
  • ASNs: AWS uses 64512 by default for the AWS side of the VPN. Customer ASNs can be public or private (64512–65534).
  • BGP Port: TCP 179.

3. Visual: Hybrid Connectivity Architecture

Loading Diagram...

Common Pitfalls

  • Static vs. Dynamic: If a static route and a BGP-learned route for the exact same CIDR exist in a VPC route table, the static route always takes precedence.
  • MTU Mismatch: Standard VPN MTU is 1500 bytes. Direct Connect supports Jumbo Frames (9001 bytes), but if the path includes a VPN or certain internet hops, packets will be dropped or fragmented if the MTU isn't adjusted.
  • Overlapping CIDRs: AWS does not support routing between overlapping CIDR blocks. Use NAT Gateway or PrivateLink for
All AWS Certified Advanced Networking - Specialty (ANS-C01) Study Resources

Related Notes

  • Lab: Implementing Hybrid Connectivity with BGP-based Site-to-Site VPN845 words
  • Study Guide: Implementing Hybrid Routing and Connectivity1,085 words
  • AWS Networking: Mastering Access Logging for ELB and CloudFront925 words
  • Mastering AWS Alert Mechanisms: CloudWatch Alarms and Incident Response1,050 words
  • Mastering Amazon CloudWatch: Observability and Monitoring for AWS Architectures875 words
  • Mastering Amazon Route 53: Advanced Features & Hybrid DNS1,345 words
  • Study Guide: Packet Analysis and VPC Traffic Mirroring1,050 words
  • AWS Network Performance Analysis & Troubleshooting Study Guide945 words
  • AWS Network Performance and Reachability Assessment Guide1,085 words
  • AWS Networking: Authentication & Authorization Study Guide945 words
  • ANS-C01 Exam Cram: Automating and Configuring Network Infrastructure860 words
  • Lab: Automating Secure Network Infrastructure with CloudFormation and EventBridge840 words

Ready to study AWS Certified Advanced Networking - Specialty (ANS-C01)?

Practice tests, flashcards, and all study notes — free, no sign-up.

Start Studying

Ready to study AWS Certified Advanced Networking - Specialty (ANS-C01)?

Practice tests, flashcards, and all study notes — free, no sign-up needed.

Start Studying — Free
AWS Certified Advanced Networking - Specialty (ANS-C01) ResourcesExplore All HivesBlogHome

© 2026 BrainyBee. Free AI-powered exam prep.