ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 123 - Professional Cloud Database Engineer discussion

Report
Export

You are configuring the networking of a Cloud SQL instance. The only application that connects to this database resides on a Compute Engine VM in the same project as the Cloud SQL instance. The VM and the Cloud SQL instance both use the same VPC network, and both have an external (public) IP address and an internal (private) IP address. You want to improve network security. What should you do?

A.
Disable and remove the internal IP address assignment.
Answers
A.
Disable and remove the internal IP address assignment.
B.
Disable both the external IP address and the internal IP address, and instead rely on Private Google Access.
Answers
B.
Disable both the external IP address and the internal IP address, and instead rely on Private Google Access.
C.
Specify an authorized network with the CIDR range of the VM.
Answers
C.
Specify an authorized network with the CIDR range of the VM.
D.
Disable and remove the external IP address assignment.
Answers
D.
Disable and remove the external IP address assignment.
Suggested answer: D

Explanation:

It is always more secure to use an internal IP, so removing them doesn't make sense. Eliminate A. You can use Private Google Access when VM instances only have internal IP addresses, so disabling the internal IPs and use Private Google Access doesn't make sense. Eliminate B. Specifying an authorized network when they're on the same subnet doesn't make sense. Eliminate C. A way to improve network security would be to disable external IPs since they're not needed.

asked 18/09/2024
Mary Cris Barreda
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first