ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 6 - Professional Cloud Network Engineer discussion

Report
Export

You are using a third-party next-generation firewall to inspect traffic. You created a custom route of 0.0.0.0/0 to route egress traffic to the firewall. You want to allow your VPC instances without public IP addresses to access the BigQuery and Cloud Pub/Sub APIs, without sending the traffic through the firewall.

Which two actions should you take? (Choose two.)

A.
Turn on Private Google Access at the subnet level.
Answers
A.
Turn on Private Google Access at the subnet level.
B.
Turn on Private Google Access at the VPC level.
Answers
B.
Turn on Private Google Access at the VPC level.
C.
Turn on Private Services Access at the VPC level.
Answers
C.
Turn on Private Services Access at the VPC level.
D.
Create a set of custom static routes to send traffic to the external IP addresses of Google APIs and services via the default internet gateway.
Answers
D.
Create a set of custom static routes to send traffic to the external IP addresses of Google APIs and services via the default internet gateway.
E.
Create a set of custom static routes to send traffic to the internal IP addresses of Google APIs and services via the default internet gateway.
Answers
E.
Create a set of custom static routes to send traffic to the internal IP addresses of Google APIs and services via the default internet gateway.
Suggested answer: A, D

Explanation:

https://cloud.google.com/vpc/docs/private-access-options#pga Private Google Access VM instances that only have internal IP addresses (no external IP addresses) can use Private Google Access. They can reach the _external IP addresses_ of Google APIs and services.

asked 18/09/2024
Amanuel Mesfin
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first