[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"me":3,"catalog:en:devops-cloud\u002Faws-networking-vpc":4,"config":256},null,{"field_key":5,"field_name":6,"seniority":7,"topic_key":8,"topic_name":9,"spec_key":7,"spec_name":7,"locale":10,"cell_total":11,"field_total":12,"seniorities":13,"topics":17,"specs":151,"samples":171},"devops-cloud","DevOps \u002F Cloud","","aws-networking-vpc","Aws Networking Vpc","en",75,3375,[14,15,16],"junior","mid","senior",[18,21,24,27,30,31,34,37,40,43,46,49,52,55,58,61,64,67,70,73,76,79,82,85,88,91,94,97,100,103,106,109,112,115,118,121,124,127,130,133,136,139,142,145,148],{"key":19,"name":20,"count":11},"aws-compute-ec2-lambda","Aws Compute Ec2 Lambda",{"key":22,"name":23,"count":11},"aws-databases-rds-dynamodb","Aws Databases Rds Dynamodb",{"key":25,"name":26,"count":11},"aws-iam-security","Aws Iam Security",{"key":28,"name":29,"count":11},"aws-messaging-eventing","Aws Messaging Eventing",{"key":8,"name":9,"count":11},{"key":32,"name":33,"count":11},"aws-storage-s3-ebs","Aws Storage S3 Ebs",{"key":35,"name":36,"count":11},"azure-compute-vm-appservice","Azure Compute Vm Appservice",{"key":38,"name":39,"count":11},"azure-databases-sql-cosmosdb","Azure Databases Sql Cosmosdb",{"key":41,"name":42,"count":11},"azure-iam-security","Azure Iam Security",{"key":44,"name":45,"count":11},"azure-messaging-eventing","Azure Messaging Eventing",{"key":47,"name":48,"count":11},"azure-networking-vnet","Azure Networking Vnet",{"key":50,"name":51,"count":11},"azure-storage-blob-managed-disk","Azure Storage Blob Managed Disk",{"key":53,"name":54,"count":11},"ci-cd-pipelines","Ci Cd Pipelines",{"key":56,"name":57,"count":11},"cloud-architecture-scaling","Cloud Architecture Scaling",{"key":59,"name":60,"count":11},"containers-orchestration","Containers Orchestration",{"key":62,"name":63,"count":11},"deployment-release-strategies","Deployment Release Strategies",{"key":65,"name":66,"count":11},"gcp-compute-gce-cloudrun","Gcp Compute Gce Cloudrun",{"key":68,"name":69,"count":11},"gcp-databases-cloudsql-spanner-firestore","Gcp Databases Cloudsql Spanner Firestore",{"key":71,"name":72,"count":11},"gcp-iam-security","Gcp Iam Security",{"key":74,"name":75,"count":11},"gcp-messaging-eventing","Gcp Messaging Eventing",{"key":77,"name":78,"count":11},"gcp-networking-vpc","Gcp Networking Vpc",{"key":80,"name":81,"count":11},"gcp-storage-gcs-persistent-disk","Gcp Storage Gcs Persistent Disk",{"key":83,"name":84,"count":11},"infrastructure-as-code","Infrastructure As Code",{"key":86,"name":87,"count":11},"k8s-config-secrets","K8s Config Secrets",{"key":89,"name":90,"count":11},"k8s-observability-troubleshooting","K8s Observability Troubleshooting",{"key":92,"name":93,"count":11},"k8s-scheduling-resources","K8s Scheduling Resources",{"key":95,"name":96,"count":11},"k8s-services-networking","K8s Services Networking",{"key":98,"name":99,"count":11},"k8s-storage","K8s Storage",{"key":101,"name":102,"count":11},"k8s-workloads","K8s Workloads",{"key":104,"name":105,"count":11},"linux-filesystem-permissions-links","Linux Filesystem Permissions Links",{"key":107,"name":108,"count":11},"linux-networking-tools-troubleshooting","Linux Networking Tools Troubleshooting",{"key":110,"name":111,"count":11},"linux-performance-monitoring-resource-limits","Linux Performance Monitoring Resource Limits",{"key":113,"name":114,"count":11},"linux-process-management-signals","Linux Process Management Signals",{"key":116,"name":117,"count":11},"linux-shell-scripting-ops-automation","Linux Shell Scripting Ops Automation",{"key":119,"name":120,"count":11},"linux-systemd-service-management","Linux Systemd Service Management",{"key":122,"name":123,"count":11},"networking-dns-loadbalancing","Networking Dns Loadbalancing",{"key":125,"name":126,"count":11},"observability-monitoring","Observability Monitoring",{"key":128,"name":129,"count":11},"reliability-incident-sre","Reliability Incident Sre",{"key":131,"name":132,"count":11},"security-iam-secrets","Security Iam Secrets",{"key":134,"name":135,"count":11},"terraform-hcl-language-expressions","Terraform Hcl Language Expressions",{"key":137,"name":138,"count":11},"terraform-modules-workspaces","Terraform Modules Workspaces",{"key":140,"name":141,"count":11},"terraform-plan-apply-drift-import","Terraform Plan Apply Drift Import",{"key":143,"name":144,"count":11},"terraform-providers-lifecycle-provisioners","Terraform Providers Lifecycle Provisioners",{"key":146,"name":147,"count":11},"terraform-state-backend-locking","Terraform State Backend Locking",{"key":149,"name":150,"count":11},"terraform-testing-policy-cicd","Terraform Testing Policy Cicd",[152,156,159,162,165,168],{"key":153,"name":154,"count":155},"aws","AWS",450,{"key":157,"name":158,"count":155},"azure","Azure",{"key":160,"name":161,"count":155},"gcp","GCP",{"key":163,"name":164,"count":155},"kubernetes","Kubernetes",{"key":166,"name":167,"count":155},"linux","Linux",{"key":169,"name":170,"count":155},"terraform","Terraform",[172,190,203,216,230,243],{"id":173,"topic":9,"difficulty":174,"body":175,"options":176,"correct_key":181,"explanation":189},"019f8a47-3a51-7d7d-a222-0f39a72ae93c",1,"In subnet `10.0.1.0\u002F24`, which IPv4 addresses does Amazon VPC reserve?",[177,180,183,186],{"key":178,"text":179},"a","Only `10.0.1.0` and `10.0.1.255`, as in a conventional broadcast network",{"key":181,"text":182},"b","The first four addresses (`.0`–`.3`) and the last address (`.255`)",{"key":184,"text":185},"c","The first address and the final three addresses in the subnet",{"key":187,"text":188},"d","None; every IPv4 address in an Amazon VPC subnet can be assigned","Amazon VPC reserves the first four and last IPv4 address in every subnet: `.0` network, `.1` router, `.2` DNS, `.3` future use, and `.255` network broadcast. VPC does not support broadcast.",{"id":191,"topic":9,"difficulty":174,"body":192,"options":193,"correct_key":178,"explanation":202},"019f8a47-3a52-7660-b640-e09d1a370bc3","What is the primary function of an Internet Gateway (IGW) attached to a VPC?",[194,196,198,200],{"key":178,"text":195},"A redundant VPC gateway target for bidirectional internet connectivity",{"key":181,"text":197},"It translates private IP addresses to a single public IP for outbound-only traffic from private subnets",{"key":184,"text":199},"It filters inbound traffic based on port and protocol before it reaches instances",{"key":187,"text":201},"It routes traffic between two peered VPCs across AWS regions","An IGW is a horizontally scaled, redundant, highly available VPC component that performs the NAT for instances with public IPs and provides a target in route tables for internet-bound traffic — in both directions. Outbound-only translation is NAT Gateway's job (b), port\u002Fprotocol filtering is Security Groups\u002FNACLs (c), and cross-VPC routing is peering (d).",{"id":204,"topic":9,"difficulty":174,"body":205,"options":206,"correct_key":184,"explanation":215},"019f8a47-3a52-7c73-8f0d-0f354d91bc32","Which statement distinguishes public and private AWS NAT Gateway connectivity types?",[207,209,211,213],{"key":178,"text":208},"Both types require an Elastic IP and can route through an IGW; their addressing and internet-connectivity behavior is therefore identical",{"key":181,"text":210},"Private NAT Gateway provides inbound internet access without an Elastic IP",{"key":184,"text":212},"Public NAT Gateway uses an Elastic IP for IGW egress; private NAT Gateway has only private IPs",{"key":187,"text":214},"The type changes only billing, while address and routing behavior remain identical","A public NAT Gateway is associated with an Elastic IP and can send translated traffic through an Internet Gateway. A private NAT Gateway has only private IPs and is intended for private paths such as Transit Gateway or a virtual private gateway; its traffic cannot reach the internet through an IGW.",{"id":217,"topic":9,"difficulty":218,"body":219,"options":220,"correct_key":187,"explanation":229},"019f8a47-3a53-7396-ad62-11139a0e0720",2,"A NAT Gateway is deployed in AZ `us-east-1a` and serves private subnets in both `us-east-1a` and `us-east-1b`. AZ `us-east-1a` fails entirely. What happens to outbound internet access for instances in `us-east-1b`?",[221,223,225,227],{"key":178,"text":222},"Unaffected — NAT Gateways automatically fail over across AZs",{"key":181,"text":224},"Unaffected — NAT Gateway traffic never actually leaves the AZ it's deployed in",{"key":184,"text":226},"Automatically restored within a few seconds via AWS-managed cross-AZ replication",{"key":187,"text":228},"Lost; NAT Gateway is AZ-scoped, so HA needs one per AZ","A NAT Gateway is provisioned in a single AZ and has no built-in cross-AZ failover. If that AZ fails, every subnet routed through it loses outbound connectivity — including subnets in other AZs that happened to route to it. The documented HA pattern is one NAT Gateway per AZ, each with its own subnet-level route table pointing to the NAT Gateway in the same AZ.",{"id":231,"topic":9,"difficulty":174,"body":232,"options":233,"correct_key":181,"explanation":242},"019f8a47-3a53-7bd9-8c66-fd985adc0bb8","In a VPC, every subnet is automatically associated with a route table if no explicit association is made. Which route table is that?",[234,236,238,240],{"key":178,"text":235},"There is none — every subnet must be explicitly associated with a route table or it has no routing at all",{"key":181,"text":237},"The VPC's main route table",{"key":184,"text":239},"A newly-created, empty route table dedicated to that subnet",{"key":187,"text":241},"The route table of the subnet with the lowest CIDR range in the VPC","Every VPC has exactly one main route table by default, and any subnet without an explicit route table association implicitly uses it. Creating a custom route table and associating it with a subnet overrides this default — the subnet then uses only the custom table.",{"id":244,"topic":9,"difficulty":218,"body":245,"options":246,"correct_key":178,"explanation":255},"019f8a47-3a54-7270-bceb-e294fb13f9cc","Which statement correctly distinguishes Security Groups from Network ACLs (NACLs)?",[247,249,251,253],{"key":178,"text":248},"Security Groups are stateful and ENI-scoped; NACLs are stateless and subnet-scoped",{"key":181,"text":250},"Security Groups operate at the subnet level and are stateless; NACLs operate at the instance level and are stateful",{"key":184,"text":252},"Both operate at the subnet level, but only NACLs support explicit deny rules",{"key":187,"text":254},"Both are stateful; the only difference is that NACLs support numbered rule priority and Security Groups do not","Security Groups attach to ENIs (effectively per-instance) and are stateful — if inbound traffic is allowed, the corresponding outbound response is automatically allowed regardless of outbound rules, and vice versa. NACLs attach to subnets and are stateless — inbound and outbound rules are evaluated independently, so a rule allowing an inbound request does not automatically allow its response; that must be permitted by a separate outbound rule (e.g. for ephemeral ports).",{"fields":257,"seniorities":429,"interview_shapes":430,"locales":435,"oauth":437,"question_count":440,"coach_enabled":441,"jd_match_enabled":441},[258,283,303,320,330,343,362,381,403,410,416,423],{"key":259,"name_tr":260,"name_en":260,"sort":174,"specializations":261},"backend","Backend",[262,265,268,271,274,277,280],{"key":263,"name":264,"field":259},"general","Genel",{"key":266,"name":267,"field":259},"go","Go",{"key":269,"name":270,"field":259},"python","Python",{"key":272,"name":273,"field":259},"java","Java",{"key":275,"name":276,"field":259},"csharp","C#\u002F.NET",{"key":278,"name":279,"field":259},"nodejs","Node.js",{"key":281,"name":282,"field":259},"php","PHP",{"key":284,"name_tr":285,"name_en":285,"sort":218,"specializations":286},"frontend","Frontend",[287,288,291,294,297,300],{"key":263,"name":264,"field":284},{"key":289,"name":290,"field":284},"javascript","JavaScript",{"key":292,"name":293,"field":284},"typescript","TypeScript",{"key":295,"name":296,"field":284},"react","React",{"key":298,"name":299,"field":284},"vue","Vue",{"key":301,"name":302,"field":284},"angular","Angular",{"key":304,"name_tr":305,"name_en":305,"sort":306,"specializations":307},"fullstack","Fullstack",3,[308,309,310,311,312,313,314,315,316,317,318,319],{"key":263,"name":264,"field":304},{"key":266,"name":267,"field":259},{"key":269,"name":270,"field":259},{"key":272,"name":273,"field":259},{"key":275,"name":276,"field":259},{"key":278,"name":279,"field":259},{"key":281,"name":282,"field":259},{"key":289,"name":290,"field":284},{"key":292,"name":293,"field":284},{"key":295,"name":296,"field":284},{"key":298,"name":299,"field":284},{"key":301,"name":302,"field":284},{"key":5,"name_tr":6,"name_en":6,"sort":321,"specializations":322},4,[323,324,325,326,327,328,329],{"key":263,"name":264,"field":5},{"key":153,"name":154,"field":5},{"key":160,"name":161,"field":5},{"key":157,"name":158,"field":5},{"key":163,"name":164,"field":5},{"key":169,"name":170,"field":5},{"key":166,"name":167,"field":5},{"key":331,"name_tr":332,"name_en":332,"sort":333,"specializations":334},"ai-engineer","AI Engineer",5,[335,336,337,340],{"key":263,"name":264,"field":331},{"key":269,"name":270,"field":331},{"key":338,"name":339,"field":331},"llm-rag","LLM\u002FRAG",{"key":341,"name":342,"field":331},"mlops","MLOps",{"key":344,"name_tr":345,"name_en":346,"sort":347,"specializations":348},"database","Veritabanı","Database",6,[349,350,353,356,359],{"key":263,"name":264,"field":344},{"key":351,"name":352,"field":344},"postgresql","PostgreSQL",{"key":354,"name":355,"field":344},"mysql","MySQL",{"key":357,"name":358,"field":344},"mongodb","MongoDB",{"key":360,"name":361,"field":344},"redis","Redis",{"key":363,"name_tr":364,"name_en":365,"sort":366,"specializations":367},"mobile","Mobil","Mobile",7,[368,369,372,375,378],{"key":263,"name":264,"field":363},{"key":370,"name":371,"field":363},"ios-swift","iOS (Swift)",{"key":373,"name":374,"field":363},"android-kotlin","Android (Kotlin)",{"key":376,"name":377,"field":363},"flutter","Flutter",{"key":379,"name":380,"field":363},"react-native","React Native",{"key":382,"name_tr":383,"name_en":384,"sort":385,"specializations":386},"security","Güvenlik","Security",8,[387,388,391,394,397,400],{"key":263,"name":264,"field":382},{"key":389,"name":390,"field":382},"appsec","AppSec",{"key":392,"name":393,"field":382},"offensive-pentest","Offensive \u002F Pentest",{"key":395,"name":396,"field":382},"cloud-security","Cloud Security",{"key":398,"name":399,"field":382},"devsecops","DevSecOps",{"key":401,"name":402,"field":382},"blue-team-incident","Blue Team \u002F Incident",{"key":404,"name_tr":405,"name_en":406,"sort":407,"specializations":408},"qa-test-automation","QA \u002F Test Otomasyonu","QA \u002F Test Automation",9,[409],{"key":263,"name":264,"field":404},{"key":411,"name_tr":412,"name_en":412,"sort":413,"specializations":414},"data-engineer","Data Engineer",10,[415],{"key":263,"name":264,"field":411},{"key":417,"name_tr":418,"name_en":419,"sort":420,"specializations":421},"game-dev","Oyun Geliştirme","Game Development",11,[422],{"key":263,"name":264,"field":417},{"key":424,"name_tr":425,"name_en":425,"sort":426,"specializations":427},"ml-engineer","ML Engineer",12,[428],{"key":263,"name":264,"field":424},[14,15,16],{"junior":431,"mid":433,"senior":434},{"questions":432,"median_sec":3},20,{"questions":432,"median_sec":3},{"questions":432,"median_sec":3},[436,10],"tr",[438,439],"google","github",21750,true]