AWS · Networking (VPC) interview questions

75 real AWS · Networking (VPC) questions from the Cloud bank, as asked in Indian campus drives and tech interviews. Every question has a verified answer and an AI-tutor explanation on placd — free to start.

1. What is VPC?

Junior
  1. A.a set of rules that determines where network traffic from a subnet is directed
  2. B.Virtual Private Cloud; a logically isolated virtual network you define in AWS
  3. C.a dedicated physical network link between on-premises and AWS bypassing the public internet
  4. D.a stateful virtual firewall controlling inbound and outbound traffic at the instance level
Reveal the answer + AI explanation — free account

3. Which statement is correct?

Junior
  1. A.VPC — a private network connection between two VPCs that routes traffic using private IPs
  2. B.VPC — a VPC component that allows resources in public subnets to reach the internet
  3. C.VPC — a private connection from a VPC to AWS services without traversing the public internet
  4. D.VPC — Virtual Private Cloud; a logically isolated virtual network you define in AWS
Reveal the answer + AI explanation — free account

4. What is Subnet?

Junior
  1. A.a stateless firewall evaluating allow/deny rules at the subnet boundary
  2. B.Virtual Private Cloud; a logically isolated virtual network you define in AWS
  3. C.the IP address range, in slash notation, assigned to a VPC or subnet
  4. D.a range of IP addresses within a VPC, tied to a single Availability Zone
Reveal the answer + AI explanation — free account

6. Which statement is correct?

Junior
  1. A.Subnet — Virtual Private Cloud; a logically isolated virtual network you define in AWS
  2. B.Subnet — a dedicated physical network link between on-premises and AWS bypassing the public internet
  3. C.Subnet — a stateful virtual firewall controlling inbound and outbound traffic at the instance level
  4. D.Subnet — a range of IP addresses within a VPC, tied to a single Availability Zone
Reveal the answer + AI explanation — free account

7. What is Internet Gateway?

Junior
  1. A.Virtual Private Cloud; a logically isolated virtual network you define in AWS
  2. B.a VPC component that allows resources in public subnets to reach the internet
  3. C.a hub that connects many VPCs and on-premises networks through a single gateway
  4. D.a dedicated physical network link between on-premises and AWS bypassing the public internet
Reveal the answer + AI explanation — free account

9. Which statement is correct?

Junior
  1. A.Internet Gateway — a VPC component that allows resources in public subnets to reach the internet
  2. B.Internet Gateway — the IP address range, in slash notation, assigned to a VPC or subnet
  3. C.Internet Gateway — a stateless firewall evaluating allow/deny rules at the subnet boundary
  4. D.Internet Gateway — a virtual network card that can be attached to and moved between instances
Reveal the answer + AI explanation — free account

10. What is NAT Gateway?

Mid
  1. A.a managed service that lets private-subnet instances reach the internet outbound only
  2. B.a private network connection between two VPCs that routes traffic using private IPs
  3. C.a stateful virtual firewall controlling inbound and outbound traffic at the instance level
  4. D.a set of rules that determines where network traffic from a subnet is directed
Reveal the answer + AI explanation — free account

12. Which statement is correct?

Mid
  1. A.NAT Gateway — a private network connection between two VPCs that routes traffic using private IPs
  2. B.NAT Gateway — a managed service that lets private-subnet instances reach the internet outbound only
  3. C.NAT Gateway — Virtual Private Cloud; a logically isolated virtual network you define in AWS
  4. D.NAT Gateway — exposes a service privately across VPCs via interface endpoints without internet exposure
Reveal the answer + AI explanation — free account

13. What is Security Group?

Mid
  1. A.a gateway allowing outbound-only internet access for IPv6 traffic from private subnets
  2. B.Virtual Private Cloud; a logically isolated virtual network you define in AWS
  3. C.a range of IP addresses within a VPC, tied to a single Availability Zone
  4. D.a stateful virtual firewall controlling inbound and outbound traffic at the instance level
Reveal the answer + AI explanation — free account

15. Which statement is correct?

Mid
  1. A.Security Group — a private connection from a VPC to AWS services without traversing the public internet
  2. B.Security Group — a virtual network card that can be attached to and moved between instances
  3. C.Security Group — a stateful virtual firewall controlling inbound and outbound traffic at the instance level
  4. D.Security Group — a hub that connects many VPCs and on-premises networks through a single gateway
Reveal the answer + AI explanation — free account

16. What is Network ACL?

Mid
  1. A.the IP address range, in slash notation, assigned to a VPC or subnet
  2. B.a stateful virtual firewall controlling inbound and outbound traffic at the instance level
  3. C.exposes a service privately across VPCs via interface endpoints without internet exposure
  4. D.a stateless firewall evaluating allow/deny rules at the subnet boundary
Reveal the answer + AI explanation — free account

18. Which statement is correct?

Mid
  1. A.Network ACL — exposes a service privately across VPCs via interface endpoints without internet exposure
  2. B.Network ACL — a private network connection between two VPCs that routes traffic using private IPs
  3. C.Network ACL — a stateless firewall evaluating allow/deny rules at the subnet boundary
  4. D.Network ACL — a stateful virtual firewall controlling inbound and outbound traffic at the instance level
Reveal the answer + AI explanation — free account

19. What is VPC Peering?

Senior
  1. A.the IP address range, in slash notation, assigned to a VPC or subnet
  2. B.a virtual network card that can be attached to and moved between instances
  3. C.a private network connection between two VPCs that routes traffic using private IPs
  4. D.a managed service that lets private-subnet instances reach the internet outbound only
Reveal the answer + AI explanation — free account

21. Which statement is correct?

Senior
  1. A.VPC Peering — the IP address range, in slash notation, assigned to a VPC or subnet
  2. B.VPC Peering — a stateless firewall evaluating allow/deny rules at the subnet boundary
  3. C.VPC Peering — a VPC component that allows resources in public subnets to reach the internet
  4. D.VPC Peering — a private network connection between two VPCs that routes traffic using private IPs
Reveal the answer + AI explanation — free account

22. What is Transit Gateway?

Senior
  1. A.exposes a service privately across VPCs via interface endpoints without internet exposure
  2. B.a stateful virtual firewall controlling inbound and outbound traffic at the instance level
  3. C.a dedicated physical network link between on-premises and AWS bypassing the public internet
  4. D.a hub that connects many VPCs and on-premises networks through a single gateway
Reveal the answer + AI explanation — free account

24. Which statement is correct?

Senior
  1. A.Transit Gateway — a stateful virtual firewall controlling inbound and outbound traffic at the instance level
  2. B.Transit Gateway — a gateway allowing outbound-only internet access for IPv6 traffic from private subnets
  3. C.Transit Gateway — a dedicated physical network link between on-premises and AWS bypassing the public internet
  4. D.Transit Gateway — a hub that connects many VPCs and on-premises networks through a single gateway
Reveal the answer + AI explanation — free account

25. What is VPC Endpoint?

Senior
  1. A.a stateless firewall evaluating allow/deny rules at the subnet boundary
  2. B.a set of rules that determines where network traffic from a subnet is directed
  3. C.the IP address range, in slash notation, assigned to a VPC or subnet
  4. D.a private connection from a VPC to AWS services without traversing the public internet
Reveal the answer + AI explanation — free account

27. Which statement is correct?

Senior
  1. A.VPC Endpoint — a private network connection between two VPCs that routes traffic using private IPs
  2. B.VPC Endpoint — a private connection from a VPC to AWS services without traversing the public internet
  3. C.VPC Endpoint — exposes a service privately across VPCs via interface endpoints without internet exposure
  4. D.VPC Endpoint — a gateway allowing outbound-only internet access for IPv6 traffic from private subnets
Reveal the answer + AI explanation — free account

28. What does aws ec2 create-vpc do?

Junior
  1. A.creates a gateway or interface endpoint for private access to a service
  2. B.adds a route to a route table directing traffic to a target gateway or interface
  3. C.creates a Transit Gateway to interconnect VPCs and on-prem networks
  4. D.creates a new VPC with a specified CIDR block
Reveal the answer + AI explanation — free account

30. Which statement is correct?

Junior
  1. A.aws ec2 create-vpc — adds an inbound allow rule to a security group
  2. B.aws ec2 create-vpc — initiates a peering connection request between two VPCs
  3. C.aws ec2 create-vpc — adds a route to a route table directing traffic to a target gateway or interface
  4. D.aws ec2 create-vpc — creates a new VPC with a specified CIDR block
Reveal the answer + AI explanation — free account

Showing 30 of 75 AWS · Networking (VPC) questions — the full set, with answers, explanations and an AI tutor on every question, is inside.

Free to start

Answers, AI explanations, and a scored voice mock interview

Sign up free to check your answers with explanations, ask the AI tutor anything on any question, and take one full AI mock interview — scored like a real panel.

Practice AWS · Networking (VPC) free