Professional-Cloud-Network-Engineer Exam Question 126

You are implementing hybrid connectivity between your company's data center and Google Cloud. You've already deployed redundant Dedicated Interconnect connections, and are now deploying VLAN attachments in us-central1. You want to use an active/passive approach, where interconnect-1 is active and interconnect-2 is a passive backup. You need to deploy a Cloud Router to enable BGP connectivity. You want to follow Google-recommended practices. What should you do?
  • Professional-Cloud-Network-Engineer Exam Question 127

    You suspect that one of the virtual machines (VMs) in your default Virtual Private Cloud (VPC) is under a denial-of-service attack. You need to analyze the incoming traffic for the VM to understand where the traffic is coming from. What should you do?
  • Professional-Cloud-Network-Engineer Exam Question 128

    You are reviewing and tuning Secure Web Proxy at your organization, Mount Kirk Games. Users have reported that they are unable to reach the documents they need on the Terram Earth website (https://www.terramearth.com/docs/*). The Secure Web Proxy rules configuration is as follows:

    You need to enable access to these documents. What should you do?
  • Professional-Cloud-Network-Engineer Exam Question 129

    Your organization has a web-based application that is going to be migrated to Google Cloud from an on-premises environment. You need to set up Cloud CDN for the application migration. The application previously used a different CDN provider and is configured to respond with Cache- Control headers. You want to keep this configuration. What should you do?
  • Professional-Cloud-Network-Engineer Exam Question 130

    You are designing a packet mirroring policy as part of your network security architecture for your gaming workload. Your infrastructure is located in the us-west2 region and deployed across several zones: us-west2-a, us-west2-b, and us-west2-c. The infrastructure is running a web- based application on TCP ports 80 and 443 with other game servers that utilize the UDP protocol.
    You need to deploy packet mirroring policies and collector instances to monitor web application traffic while minimizing inter-zonal network egress costs.
    Following Google-recommended practices, how should you deploy the packet mirroring policies and collector instances?