ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 150 - Professional Cloud Security Engineer discussion

Report
Export

Your organization's Google Cloud VMs are deployed via an instance template that configures them with a public IP address in order to host web services for external users. The VMs reside in a service project that is attached to a host (VPC) project containing one custom Shared VPC for the VMs. You have been asked to reduce the exposure of the VMs to the internet while continuing to service external users. You have already recreated the instance template without a public IP address configuration to launch the managed instance group (MIG). What should you do?

A.
Deploy a Cloud NAT Gateway in the service project for the MIG.
Answers
A.
Deploy a Cloud NAT Gateway in the service project for the MIG.
B.
Deploy a Cloud NAT Gateway in the host (VPC) project for the MIG.
Answers
B.
Deploy a Cloud NAT Gateway in the host (VPC) project for the MIG.
C.
Deploy an external HTTP(S) load balancer in the service project with the MIG as a backend.
Answers
C.
Deploy an external HTTP(S) load balancer in the service project with the MIG as a backend.
D.
Deploy an external HTTP(S) load balancer in the host (VPC) project with the MIG as a backend.
Answers
D.
Deploy an external HTTP(S) load balancer in the host (VPC) project with the MIG as a backend.
Suggested answer: D

Explanation:

https://cloud.google.com/load-balancing/docs/https#shared-vpc

While you can create all the load balancing components and backends in the Shared VPC host project, this model does not separate network administration and service development responsibilities.

asked 18/09/2024
Sushil Karki
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first