ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 57 - Professional Cloud Security Engineer discussion

Report
Export

Your team wants to make sure Compute Engine instances running in your production project do not have public IP addresses. The frontend application Compute Engine instances will require public IPs. The product engineers have the Editor role to modify resources. Your team wants to enforce this requirement.

How should your team meet these requirements?

A.
Enable Private Access on the VPC network in the production project.
Answers
A.
Enable Private Access on the VPC network in the production project.
B.
Remove the Editor role and grant the Compute Admin IAM role to the engineers.
Answers
B.
Remove the Editor role and grant the Compute Admin IAM role to the engineers.
C.
Set up an organization policy to only permit public IPs for the front-end Compute Engine instances.
Answers
C.
Set up an organization policy to only permit public IPs for the front-end Compute Engine instances.
D.
Set up a VPC network with two subnets: one with public IPs and one without public IPs.
Answers
D.
Set up a VPC network with two subnets: one with public IPs and one without public IPs.
Suggested answer: C

Explanation:

https://cloud.google.com/resource-manager/docs/organization-policy/org-policy-constraints#constraints-for-specific-services

asked 18/09/2024
Nicklas Magnusson
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first