Professional-Cloud-Network-Engineer Exam Question 31
Your company is moving to a hybrid cloud environment and needs to connect two on-premises data centers to Google Cloud. Your company has opted for no service level agreement (SLA) on the Dedicated Interconnect ports. You set up a single Dedicated Interconnect to connect each on- premises data center to Google Cloud: one Dedicated Interconnect in us-east1 and another Dedicated Interconnect in us-west1. You also configured a Cloud Router for each Dedicated Interconnect in each respective region. You now need to configure the Interconnect attachments to provide as much high availability diversity as possible based on this design. What should you do?
Professional-Cloud-Network-Engineer Exam Question 32
Your global website is hosted on Google Cloud. The website's static assets, such as images and CSS files, are stored in a Cloud Storage bucket, while the dynamic content is served by a managed instance group (MIG). You want to improve website performance, reduce latency, and create an efficient, budget-friendly solution that uses Cloud CDN to cache static assets as close to your users as possible. You also want to ensure that requests for dynamic content are sent directly to the MIG. What should you do?
Professional-Cloud-Network-Engineer Exam Question 33
You are deploying an application that runs on Compute Engine instances. You need to determine how to expose your application to a new customer. You must ensure that your application meets the following requirements:
- Maps multiple existing reserved external IP addresses to the instance
- Processes IP Encapsulating Security Payload (ESP) traffic
What should you do?
- Maps multiple existing reserved external IP addresses to the instance
- Processes IP Encapsulating Security Payload (ESP) traffic
What should you do?
Professional-Cloud-Network-Engineer Exam Question 34
You are maintaining a Shared VPC in a host project. Several departments within your company have infrastructure in different service projects attached to the Shared VPC and use Identity and Access Management (IAM) permissions to manage the cloud resources in those projects. VPC Network Peering is also set up between the Shared VPC and a common services VPC that is not in a service project. Several users are experiencing failed connectivity between certain instances in different Shared VPC service projects and between certain instances and the internet. You need to validate the network configuration to identify whether a misconfiguration is the root cause of the problem. What should you do?
Professional-Cloud-Network-Engineer Exam Question 35
You are implementing a Shared VPC network for your organization, which has distributed teams.
One of the application developers works across several teams and notices that they can deploy applications in subnets that are reserved for another application's service projects. You want to ensure that developers can only deploy resources in the subnets that are reserved for their respective service project. What should you do?
One of the application developers works across several teams and notices that they can deploy applications in subnets that are reserved for another application's service projects. You want to ensure that developers can only deploy resources in the subnets that are reserved for their respective service project. What should you do?
