A. Create a new inbound rule on the EC2 instances’ security groups to allow ICMP traffic from the on-premises CIDR.
B. Create a peering connection between the IPsec tunnel and the subnet of the EC2 instances.
C. Enable route propagation for the virtual private gateway in the route table that is assigned to the subnet of the EC2 instances.
D. Modify the VPC’s DHCP options set. Add the IPsec tunnel to the VPN section.

- Awsexamhub website is not related to, affiliated with, endorsed or authorized by Amazon.
- Trademarks, certification & product names are used for reference only and belong to Amazon.