Professional-Cloud-Network-Engineer Exam Question 66

Your company has a single Virtual Private Cloud (VPC) network deployed in Google Cloud with access from your on-premises network using Cloud Interconnect. You must configure access only to Google APIs and services that are supported by VPC Service Controls through hybrid connectivity with a service level agreement (SLA) in place. What should you do?
  • Professional-Cloud-Network-Engineer Exam Question 67

    You have deployed an HTTP(s) load balancer, but health checks to port 80 on the Compute Engine virtual machine instance are failing, and no traffic is sent to your instances. You want to resolve the problem. Which commands should you run?
  • Professional-Cloud-Network-Engineer Exam Question 68

    You have created a firewall with rules that only allow traffic over HTTP, HTTPS, and SSH ports. While testing, you specifically try to reach the server over multiple ports and protocols; however, you do not see any denied connections in the firewall logs. You want to resolve the issue.
    What should you do?
  • Professional-Cloud-Network-Engineer Exam Question 69

    Your company just completed the acquisition of Altostrat (a current GCP customer). Each company has a separate organization in GCP and has implemented a custom DNS solution. Each organization will retain its current domain and host names until after a full transition and architectural review is done in one year. These are the assumptions for both GCP environments.
    * Each organization has enabled full connectivity between all of its projects by using Shared VPC.
    * Both organizations strictly use the 10.0.0.0/8 address space for their instances, except for bastion hosts (for accessing the instances) and load balancers for serving web traffic.
    * There are no prefix overlaps between the two organizations.
    * Both organizations already have firewall rules that allow all inbound and outbound traffic from the 10.0.0.0/8 address space.
    * Neither organization has Interconnects to their on-premises environment.
    You want to integrate networking and DNS infrastructure of both organizations as quickly as possible and with minimal downtime.
    Which two steps should you take? (Choose two.)
  • Professional-Cloud-Network-Engineer Exam Question 70

    You are trying to update firewall rules in a shared VPC for which you have been assigned only Network Admin permissions. You cannot modify the firewall rules. Your organization requires using the least privilege necessary.
    Which level of permissions should you request?