Professional-Cloud-Network-Engineer Exam Question 11

You are securing a newly provisioned 10 Gbps Dedicated Interconnect that connects your on- premises data center to your Google Cloud VPC. Your company mandated that all IP traffic between your private on-premises network and the VPC must be secured with strong, end-to-end encryption at layer 3 in the Open Systems Interconnection (OSI) model. You need to implement the most direct and effective solution. What should you do?
  • Professional-Cloud-Network-Engineer Exam Question 12

    You have applications running in the us-west1 and us-east1 regions. You want to build a highly available VPN that provides 99.99% availability to connect your applications from your project to the cloud services provided by your partner's project while minimizing the amount of infrastructure required. Your partner's services are also in the us-west1 and us-east1 regions. You want to implement the simplest solution. What should you do?
  • Professional-Cloud-Network-Engineer Exam Question 13

    Your organization has implemented Vertex AI online prediction in your Google Cloud environment, which is in the us-central1 region. Online prediction is available through private services access by using the IP CIDR range of 172.16.53.0/24. You need to configure access to Vertex AI without affecting the existing routes. You want to use the VLAN attachments that are located in the us-west1 region as primary. The interconnect VLAN attachments in the us-west2 region can only be used as a backup. What should you do?
  • Professional-Cloud-Network-Engineer Exam Question 14

    You are responsible for designing a new connectivity solution between your organization's on- premises data center and your Google Cloud Virtual Private Cloud (VPC) network. Currently, there is no end-to-end connectivity. You must ensure a service level agreement (SLA) of 99.99% availability. What should you do?
  • Professional-Cloud-Network-Engineer Exam Question 15

    You recently deployed Compute Engine instances in regions us-west1 and us-east1 in a Virtual Private Cloud (VPC) with default routing configurations. Your company security policy mandates that virtual machines (VMs) must not have public IP addresses attached to them. You need to allow your instances to fetch updates from the internet while preventing external access. What should you do?