75 AWS · Networking (VPC) questions from the Cloud bank, written for Indian campus drives and tech interviews. Every question has a verified answer and an AI-tutor explanation on placd.
Free to start: the 2-minute IT readiness check — six questions and a result.
A.a set of rules that determines where network traffic from a subnet is directed
B.Virtual Private Cloud; a logically isolated virtual network you define in AWS
C.a dedicated physical network link between on-premises and AWS bypassing the public internet
D.a stateful virtual firewall controlling inbound and outbound traffic at the instance level
Answer + AI explanation with Pro
2. Which term means: "Virtual Private Cloud; a logically isolated virtual network you define in AWS"?
Junior
A.VPC
B.Network ACL
C.Subnet
D.Internet Gateway
Answer + AI explanation with Pro
3. Which statement is correct?
Junior
A.VPC — a private network connection between two VPCs that routes traffic using private IPs
B.VPC — a VPC component that allows resources in public subnets to reach the internet
C.VPC — a private connection from a VPC to AWS services without traversing the public internet
D.VPC — Virtual Private Cloud; a logically isolated virtual network you define in AWS
Answer + AI explanation with Pro
4. What is Subnet?
Junior
A.a stateless firewall evaluating allow/deny rules at the subnet boundary
B.Virtual Private Cloud; a logically isolated virtual network you define in AWS
C.the IP address range, in slash notation, assigned to a VPC or subnet
D.a range of IP addresses within a VPC, tied to a single Availability Zone
Answer + AI explanation with Pro
5. Which term means: "a range of IP addresses within a VPC, tied to a single Availability Zone"?
Junior
A.Subnet
B.Transit Gateway
C.VPC
D.Security Group
Answer + AI explanation with Pro
6. Which statement is correct?
Junior
A.Subnet — Virtual Private Cloud; a logically isolated virtual network you define in AWS
B.Subnet — a dedicated physical network link between on-premises and AWS bypassing the public internet
C.Subnet — a stateful virtual firewall controlling inbound and outbound traffic at the instance level
D.Subnet — a range of IP addresses within a VPC, tied to a single Availability Zone
Answer + AI explanation with Pro
7. What is Internet Gateway?
Junior
A.Virtual Private Cloud; a logically isolated virtual network you define in AWS
B.a VPC component that allows resources in public subnets to reach the internet
C.a hub that connects many VPCs and on-premises networks through a single gateway
D.a dedicated physical network link between on-premises and AWS bypassing the public internet
Answer + AI explanation with Pro
8. Which term means: "a VPC component that allows resources in public subnets to reach the internet"?
Junior
A.VPC Endpoint
B.Internet Gateway
C.Elastic Network Interface
D.Direct Connect
Answer + AI explanation with Pro
9. Which statement is correct?
Junior
A.Internet Gateway — a VPC component that allows resources in public subnets to reach the internet
B.Internet Gateway — the IP address range, in slash notation, assigned to a VPC or subnet
C.Internet Gateway — a stateless firewall evaluating allow/deny rules at the subnet boundary
D.Internet Gateway — a virtual network card that can be attached to and moved between instances
Answer + AI explanation with Pro
10. What is NAT Gateway?
Mid
A.a managed service that lets private-subnet instances reach the internet outbound only
B.a private network connection between two VPCs that routes traffic using private IPs
C.a stateful virtual firewall controlling inbound and outbound traffic at the instance level
D.a set of rules that determines where network traffic from a subnet is directed
Answer + AI explanation with Pro
11. Which term means: "a managed service that lets private-subnet instances reach the internet outbound only"?
Mid
A.Network ACL
B.Transit Gateway
C.NAT Gateway
D.Internet Gateway
Answer + AI explanation with Pro
12. Which statement is correct?
Mid
A.NAT Gateway — a private network connection between two VPCs that routes traffic using private IPs
B.NAT Gateway — a managed service that lets private-subnet instances reach the internet outbound only
C.NAT Gateway — Virtual Private Cloud; a logically isolated virtual network you define in AWS
D.NAT Gateway — exposes a service privately across VPCs via interface endpoints without internet exposure
Answer + AI explanation with Pro
13. What is Security Group?
Mid
A.a gateway allowing outbound-only internet access for IPv6 traffic from private subnets
B.Virtual Private Cloud; a logically isolated virtual network you define in AWS
C.a range of IP addresses within a VPC, tied to a single Availability Zone
D.a stateful virtual firewall controlling inbound and outbound traffic at the instance level
Answer + AI explanation with Pro
14. Which term means: "a stateful virtual firewall controlling inbound and outbound traffic at the instance level"?
Mid
A.Internet Gateway
B.Security Group
C.Transit Gateway
D.Subnet
Answer + AI explanation with Pro
15. Which statement is correct?
Mid
A.Security Group — a private connection from a VPC to AWS services without traversing the public internet
B.Security Group — a virtual network card that can be attached to and moved between instances
C.Security Group — a stateful virtual firewall controlling inbound and outbound traffic at the instance level
D.Security Group — a hub that connects many VPCs and on-premises networks through a single gateway
Answer + AI explanation with Pro
16. What is Network ACL?
Mid
A.the IP address range, in slash notation, assigned to a VPC or subnet
B.a stateful virtual firewall controlling inbound and outbound traffic at the instance level
C.exposes a service privately across VPCs via interface endpoints without internet exposure
D.a stateless firewall evaluating allow/deny rules at the subnet boundary
Answer + AI explanation with Pro
17. Which term means: "a stateless firewall evaluating allow/deny rules at the subnet boundary"?
Mid
A.Subnet
B.Transit Gateway
C.Network ACL
D.Security Group
Answer + AI explanation with Pro
18. Which statement is correct?
Mid
A.Network ACL — exposes a service privately across VPCs via interface endpoints without internet exposure
B.Network ACL — a private network connection between two VPCs that routes traffic using private IPs
C.Network ACL — a stateless firewall evaluating allow/deny rules at the subnet boundary
D.Network ACL — a stateful virtual firewall controlling inbound and outbound traffic at the instance level
Answer + AI explanation with Pro
19. What is VPC Peering?
Senior
A.the IP address range, in slash notation, assigned to a VPC or subnet
B.a virtual network card that can be attached to and moved between instances
C.a private network connection between two VPCs that routes traffic using private IPs
D.a managed service that lets private-subnet instances reach the internet outbound only
Answer + AI explanation with Pro
20. Which term means: "a private network connection between two VPCs that routes traffic using private IPs"?
Senior
A.CIDR Block
B.Transit Gateway
C.Security Group
D.VPC Peering
Answer + AI explanation with Pro
21. Which statement is correct?
Senior
A.VPC Peering — the IP address range, in slash notation, assigned to a VPC or subnet
B.VPC Peering — a stateless firewall evaluating allow/deny rules at the subnet boundary
C.VPC Peering — a VPC component that allows resources in public subnets to reach the internet
D.VPC Peering — a private network connection between two VPCs that routes traffic using private IPs
Answer + AI explanation with Pro
22. What is Transit Gateway?
Senior
A.exposes a service privately across VPCs via interface endpoints without internet exposure
B.a stateful virtual firewall controlling inbound and outbound traffic at the instance level
C.a dedicated physical network link between on-premises and AWS bypassing the public internet
D.a hub that connects many VPCs and on-premises networks through a single gateway
Answer + AI explanation with Pro
23. Which term means: "a hub that connects many VPCs and on-premises networks through a single gateway"?
Senior
A.Transit Gateway
B.Elastic Network Interface
C.AWS PrivateLink
D.CIDR Block
Answer + AI explanation with Pro
24. Which statement is correct?
Senior
A.Transit Gateway — a stateful virtual firewall controlling inbound and outbound traffic at the instance level
B.Transit Gateway — a gateway allowing outbound-only internet access for IPv6 traffic from private subnets
C.Transit Gateway — a dedicated physical network link between on-premises and AWS bypassing the public internet
D.Transit Gateway — a hub that connects many VPCs and on-premises networks through a single gateway
Answer + AI explanation with Pro
25. What is VPC Endpoint?
Senior
A.a stateless firewall evaluating allow/deny rules at the subnet boundary
B.a set of rules that determines where network traffic from a subnet is directed
C.the IP address range, in slash notation, assigned to a VPC or subnet
D.a private connection from a VPC to AWS services without traversing the public internet
Answer + AI explanation with Pro
26. Which term means: "a private connection from a VPC to AWS services without traversing the public internet"?
Senior
A.AWS PrivateLink
B.Elastic Network Interface
C.Transit Gateway
D.VPC Endpoint
Answer + AI explanation with Pro
27. Which statement is correct?
Senior
A.VPC Endpoint — a private network connection between two VPCs that routes traffic using private IPs
B.VPC Endpoint — a private connection from a VPC to AWS services without traversing the public internet
C.VPC Endpoint — exposes a service privately across VPCs via interface endpoints without internet exposure
D.VPC Endpoint — a gateway allowing outbound-only internet access for IPv6 traffic from private subnets
Answer + AI explanation with Pro
28. What does aws ec2 create-vpc do?
Junior
A.creates a gateway or interface endpoint for private access to a service
B.adds a route to a route table directing traffic to a target gateway or interface
C.creates a Transit Gateway to interconnect VPCs and on-prem networks
D.creates a new VPC with a specified CIDR block
Answer + AI explanation with Pro
29. Which command will creates a new VPC with a specified CIDR block?
Junior
A.aws ec2 create-vpc-endpoint
B.aws ec2 create-vpc-peering-connection
C.aws ec2 create-vpc
D.aws ec2 describe-subnets
Answer + AI explanation with Pro
30. Which statement is correct?
Junior
A.aws ec2 create-vpc — adds an inbound allow rule to a security group
B.aws ec2 create-vpc — initiates a peering connection request between two VPCs
C.aws ec2 create-vpc — adds a route to a route table directing traffic to a target gateway or interface
D.aws ec2 create-vpc — creates a new VPC with a specified CIDR block
Answer + AI explanation with Pro
Showing 30 of 75 AWS · Networking (VPC) questions — the full set, with answers, explanations and an AI tutor on every question, is inside.
Free to start
Start with a free readiness check
Sign up free for the 2-minute IT readiness check and a scored result. Answers, explanations and the AI tutor on every AWS · Networking (VPC) question come with Pro.