Exam Name: | Google Certified Professional - Cloud Architect (GCP) | ||
Exam Code: | Professional-Cloud-Architect Dumps | ||
Vendor: | Certification: | Google Cloud Certified | |
Questions: | 275 Q&A's | Shared By: | aleena |
Your company has decided to build a backup replica of their on-premises user authentication PostgreSQL database on Google Cloud Platform. The database is 4 TB, and large updates are frequent. Replication requires private address space communication. Which networking approach should you use?
Your company has just recently activated Cloud Identity to manage users. The Google Cloud Organization has been configured as wed. The security learn needs to secure protects that will be part of the Organization. They want to prohibit IAM users outside the domain from gaining permissions from now on. What should they do?
For this question, refer to the EHR Healthcare case study. In the past, configuration errors put public IP addresses on backend servers that should not have been accessible from the Internet. You need to ensure that no one can put external IP addresses on backend Compute Engine instances and that external IP addresses can only be configured on frontend Compute Engine instances. What should you do?
For this question, refer to the EHR Healthcare case study. EHR has single Dedicated Interconnect
connection between their primary data center and Googles network. This connection satisfies
EHR’s network and security policies:
• On-premises servers without public IP addresses need to connect to cloud resources
without public IP addresses
• Traffic flows from production network mgmt. servers to Compute Engine virtual
machines should never traverse the public internet.
You need to upgrade the EHR connection to comply with their requirements. The new
connection design must support business critical needs and meet the same network and
security policy requirements. What should you do?