Network and Content Delivery
CoreVPC endpoints
Explicit private-connectivity example and service-access path.
Key points
- VPC endpoints provide private access to supported services with type-specific route, DNS, policy, security-group, and ENI behavior.
Best-known use cases
- D2.1, D2.2, and D5.1: move or troubleshoot a named supported-service flow on the intended private endpoint path.
What candidates often confuse it with
- A VPC endpoint reaches a supported service privately; PrivateLink publishes selected provider services and NAT reaches public endpoints.
Key takeaway
Verify endpoint type, service and Region support, route or DNS selection, policy, security groups, and actual traffic path.
Related services
- Amazon Application Recovery Controller
- AWS Client VPN
- Amazon CloudFront
Relevant exam tasks
- D2.1 — Task 2.1: Implement scalability and elasticity.
- 2.1.1 — Configure and manage scaling mechanisms in compute environments.
- D2.2 — Task 2.2: Implement highly available and resilient environments.
- 2.2.1 — Configure and troubleshoot Elastic Load Balancing (ELB) and Amazon Route 53 health checks.
- D5.1 — Task 5.1: Implement and optimize networking features and connectivity.
- 5.1.1 — Configure a VPC (for example, subnets, route tables, network ACLs, security groups, NAT gateways, internet gateway, egress-only internet gateway).