Professional-Cloud-Network-Engineer Exam Question 36

Your software team is developing an on-premises web application that requires direct connectivity to Compute Engine Instances in GCP using the RFC 1918 address space. You want to choose a connectivity solution from your on-premises environment to GCP, given these specifications:
Your ISP is a Google Partner Interconnect provider.
Your on-premises VPN device's internet uplink and downlink speeds are 10 Gbps.
A test VPN connection between your on-premises gateway and GCP is performing at a maximum speed of 500 Mbps due to packet losses.
Most of the data transfer will be from GCP to the on-premises environment.
The application can burst up to 1.5 Gbps during peak transfers over the Interconnect.
Cost and the complexity of the solution should be minimal.
How should you provision the connectivity solution?
  • Professional-Cloud-Network-Engineer Exam Question 37

    You need to enable Cloud CDN for all the objects inside a storage bucket. You want to ensure that all the objects in the storage bucket can be served by the CDN.
    What should you do in the GCP Console?
  • Professional-Cloud-Network-Engineer Exam Question 38

    You have an application running on Compute Engine that uses BigQuery to generate some results that are stored in Cloud Storage. You want to ensure that none of the application instances have external IP addresses.
    Which two methods can you use to accomplish this? (Choose two.)
  • Professional-Cloud-Network-Engineer Exam Question 39

    You have deployed a proof-of-concept application by manually placing instances in a single Compute Engine zone. You are now moving the application to production, so you need to increase your application availability and ensure it can autoscale.
    How should you provision your instances?
  • Professional-Cloud-Network-Engineer Exam Question 40

    You have an application hosted on a Compute Engine virtual machine instance that cannot communicate with a resource outside of its subnet. When you review the flow and firewall logs, you do not see any denied traffic listed.
    During troubleshooting you find:
    - Flow logs are enabled for the VPC subnet, and all firewall rules are
    set to log.
    - The subnetwork logs are not excluded from Stackdriver.
    - The instance that is hosting the application can communicate outside
    the subnet.
    - Other instances within the subnet can communicate outside the subnet.
    - The external resource initiates communication.
    What is the most likely cause of the missing log lines?