Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam Professional Cloud Architect topic 1 question 27 discussion

Actual exam question from Google's Professional Cloud Architect
Question #: 27
Topic #: 1
[All Professional Cloud Architect Questions]

Your company has decided to build a backup replica of their on-premises user authentication PostgreSQL database on Google Cloud Platform. The database is 4
TB, and large updates are frequent. Replication requires private address space communication.
Which networking approach should you use?

  • A. Google Cloud Dedicated Interconnect
  • B. Google Cloud VPN connected to the data center network
  • C. A NAT and TLS translation gateway installed on-premises
  • D. A Google Compute Engine instance with a VPN server installed connected to the data center network
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️
Google Cloud Dedicated Interconnect provides direct physical connections and RFC 1918 communication between your on-premises network and Google's network. Dedicated Interconnect enables you to transfer large amounts of data between networks, which can be more cost effective than purchasing additional bandwidth over the public Internet or using VPN tunnels.
Benefits:
✑ Traffic between your on-premises network and your VPC network doesn't traverse the public Internet. Traffic traverses a dedicated connection with fewer hops, meaning there are less points of failure where traffic might get dropped or disrupted.
✑ Your VPC network's internal (RFC 1918) IP addresses are directly accessible from your on-premises network. You don't need to use a NAT device or VPN tunnel to reach internal IP addresses. Currently, you can only reach internal IP addresses over a dedicated connection. To reach Google external IP addresses, you must use a separate connection.
✑ You can scale your connection to Google based on your needs. Connection capacity is delivered over one or more 10 Gbps Ethernet connections, with a maximum of eight connections (80 Gbps total per interconnect).
✑ The cost of egress traffic from your VPC network to your on-premises network is reduced. A dedicated connection is generally the least expensive method if you have a high-volume of traffic to and from Google's network.
Reference:
https://cloud.google.com/interconnect/docs/details/dedicated

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
AWS56
Highly Voted 4 years, 3 months ago
A is the one
upvoted 24 times
tartar
3 years, 8 months ago
A is ok
upvoted 7 times
...
nitinz
3 years, 1 month ago
A, direct connect is private. VPN not enough for 4 TB with huge frequent changes.
upvoted 3 times
...
...
amxexam
Highly Voted 2 years, 7 months ago
Let's go with option elimination A. Google Cloud Dedicated Interconnect >> Secured, fast connection, hence the choice. This will allow private connection from GCP to the data centre with a fast connection. Cost is not mentioned in the requirement to eliminate this option. B. Google Cloud VPN connected to the data centre network >> We have to think about data flowing on the internet and the requirement talks about private connect. Also not sure how well you connect VPN with Data Center until you use the hybrid option. https://cloud.google.com/network-connectivity/docs/vpn/concepts/overview hence eliminate C. A NAT and TLS translation gateway installed on-premises >>This is a VM option to reach outside won't for this requirement hence eliminate D. A Google Compute Engine instance with a VPN server installed connected to the data centre network >>This is a slow option hence eliminate Hence A
upvoted 16 times
...
Jen3
Most Recent 1 month, 1 week ago
If you tried to sell me on Interconnect when all I needed was a VPN (meets bandwidth req, private address space, encryption of traffic possible), I would reach out to AWS for a quote...
upvoted 1 times
...
lisabisa
6 months, 3 weeks ago
GoogleVPN throughput is 3Gbps. It supports private IP connection and cheaper than DIrect Connection. Direct connect supports 8 * 10Gbps or 2*100Gbps. But too expensive for this
upvoted 2 times
...
eka_nostra
8 months, 3 weeks ago
Selected Answer: A
Connect to private space with high-speed bandwidth will go to A.
upvoted 2 times
...
mrhege
11 months, 1 week ago
B: Dedicated Interconnect would be a major overkill here and a quite expensive one as well. Requirements mention private _address space_, not private connection. Data over VPN is just as secure. Also there is no mention that a Google PoP would be available. https://cloud.google.com/network-connectivity/docs/how-to/choose-product
upvoted 1 times
...
mohideenks
1 year, 4 months ago
Selected Answer: A
A is the correct answer
upvoted 1 times
...
Mahmoud_E
1 year, 6 months ago
Selected Answer: A
A is great but expensive for just a database DR but what can we do about that
upvoted 1 times
...
zr79
1 year, 6 months ago
VPN is not private, it is public but encrypted. Also, VPN is not suitable for large updates that happen frequently
upvoted 1 times
...
AzureDP900
1 year, 6 months ago
without any second thought A is right
upvoted 1 times
...
minmin2020
1 year, 6 months ago
Selected Answer: A
A. Google Cloud Dedicated Interconnect - large updates and better security, however may not be the most cost effective choice
upvoted 1 times
...
GoReplyGCPExam
1 year, 11 months ago
Selected Answer: A
A is the one
upvoted 1 times
...
Nirca
1 year, 12 months ago
Selected Answer: A
Direct connect.
upvoted 1 times
...
hibi6x
2 years, 4 months ago
Challenge me but this is answer B. I have 4TB DB, frequent update would be what ? 50% daily change means 2TB daily means ~25Mbps. With VPN I can easily achieved that. It is typical ingress to cloud free ....It would be madness to pay 5k montly only for Directo Connect...
upvoted 5 times
AmitAr
1 year, 11 months ago
Key points of quesiton - 1) Huge data and 2) on-premises user authentication PostgreSQL - which means security - vpn uses public internet .. so B is not option. A - should be correct answer
upvoted 2 times
...
...
haroldbenites
2 years, 4 months ago
Go for A
upvoted 2 times
...
vincy2202
2 years, 4 months ago
A is the correct answer.
upvoted 2 times
...
dlpkmr98
2 years, 5 months ago
always go with best practices --Google Cloud Dedicated Interconnect
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...