Configuring CloudFront Origin Failover with Minimal Overhead
A media company is planning to host an event that the company will live stream to users. The company wants to use Amazon CloudFront. A network engineer creates a primary origin and a secondary origin for CloudFront. The engineer needs to ensure that the primary origin can fail over to the secondary origin within 15 seconds if a disruption occurs. Which solution will meet this requirement with the LEAST operational overhead?
Community Votes
100% of anonymous learners picked answer C. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
The exam tests the understanding that CloudFront has built-in origin failover capabilities, allowing engineers to control failover speed via configuration rather than custom code.
This question tests knowledge of native Amazon CloudFront origin failover mechanisms and how to configure timeout settings for rapid switching. The community consensus confirms that adjusting connection timeout and retry counts is the most efficient method.
Candidates often choose Lambda@Edge solutions (Options A or D) because they assume manual health checking is required, failing to recognize CloudFront's native automatic failover feature which incurs zero additional operational overhead.
Community Discussion (3 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Why the Answer Is Correct
Option C is correct because Amazon CloudFront natively supports origin groups for automatic failover. By configuring the 'Origin connection timeout' to 5 seconds and 'Origin connection attempts' to 2, you ensure that if the primary origin does not respond within 10 seconds (5s * 2 retries), CloudFront automatically routes traffic to the secondary origin. This meets the <15 second requirement without any additional infrastructure.Why the Other Options Are Wrong
Options A and D involve Lambda@Edge functions, which add significant operational overhead including writing, deploying, and maintaining code, as well as potential cold start delays. Option B suggests using an NLB, which is unnecessary complexity since CloudFront handles the failover logic internally at the edge; an NLB would also introduce latency and cost without providing the specific origin-group failover benefits native to CloudFront.Community Comment Notes
Comments [1], [2], and [3] unanimously support Option C. They highlight that CloudFront determines origin health based on these specific timeout and retry settings. One commenter explicitly calculates the total time as 5 seconds * 2 attempts = 10 seconds, proving it fits within the 15-second constraint.Official Reference
Exam Strategy
When asked for 'least operational overhead,' always look for managed service features before considering custom integrations like Lambda or external load balancers. For CloudFront questions involving reliability, check for native Origin Groups and their configuration parameters first.
Related Analysis
Practice All ANS-C01 Questions
Access 137 questions with complete answers and detailed explanations.
View Full ANS-C01 Practice Test →