Professional-Cloud-Network-Engineer Exam Question 51

You are using a third-party next-generation firewall to inspect traffic. You created a custom route of 0.0.0.0/0 to route egress traffic to the firewall. You want to allow your VPC instances without public IP addresses to access the BigQuery and Cloud Pub/Sub APIs, without sending the traffic through the firewall.
Which two actions should you take? (Choose two.)
  • Professional-Cloud-Network-Engineer Exam Question 52

    You are increasing your usage of Cloud VPN between on-premises and GCP, and you want to support more traffic than a single tunnel can handle. You want to increase the available bandwidth using Cloud VPN.
    What should you do?
  • Professional-Cloud-Network-Engineer Exam Question 53

    Your company has recently expanded their EMEA-based operations into APAC. Globally distributed users report that their SMTP and IMAP services are slow. Your company requires end-to-end encryption, but you do not have access to the SSL certificates.
    Which Google Cloud load balancer should you use?
  • Professional-Cloud-Network-Engineer Exam Question 54

    You want to set up two Cloud Routers so that one has an active Border Gateway Protocol (BGP) session, and the other one acts as a standby.
    Which BGP attribute should you use on your on-premises router?
  • Professional-Cloud-Network-Engineer Exam Question 55

    You are adding steps to a working automation that uses a service account to authenticate. You need to drive the automation the ability to retrieve files from a Cloud Storage bucket. Your organization requires using the least privilege possible.
    What should you do?