Practice Test 2 | Google Cloud Certified Professional Cloud Network Engineer | Dumps | Mock Test
As the network engineer in your firm. The firm has an organization in GCP, with four projects for the different departments. You are required to design a network that allows for sharing a network appliance as a DMZ to protect the GCE instances in the different projects.
Which solution can meet the criteria provided?
A. Create a Shared VPC in the Host Project, share subnets with the four Service Projects. Create the network appliance in the Shared VPC with interfaces in each service projects in a particular region. Create custom routes to route all internet-bound traffic to the network appliance.
B. Create a Shared VPC in the Host Project, share subnets with the four Service Projects. Create a network appliance in each Service VPC with an interface in the Host project in a particular region. Create custom routes to route all internet-bound traffic to the network appliance.
C. Create a network appliance in each VPC of the different projects in a particular region. Create custom routes to route all internet-bound traffic to the network appliance.
D. Create a Shared VPC in the Service Project, share subnets with the four Service Projects. Create the network appliance in the Shared VPC with interfaces in each service projects in a particular region. Create custom routes to route all internet-bound traffic to the network appliance.
Answer: A
Option A is correct, because Shared VPC is created in the host project and that is where the appliance, to be shared, should also be created. Subnets are shared with Service Projects. Option B is incorrect the network appliance should be created in the host project.
Option C is incorrect because it fails to satisfy the requirement of sharing a network appliance.
Option D is incorrect because you can not create a Shared VPC in a Service project.
See https://cloud.google.com/vpc/docs/multiple-interfaces-concepts for more information on using multiple NICs
Comments are closed, but trackbacks and pingbacks are open.