exam questions

Exam Professional Cloud Network Engineer All Questions

View all questions & answers for the Professional Cloud Network Engineer exam

Exam Professional Cloud Network Engineer topic 1 question 101 discussion

Actual exam question from Google's Professional Cloud Network Engineer
Question #: 101
Topic #: 1
[All Professional Cloud Network Engineer Questions]

Your company has 10 separate Virtual Private Cloud (VPC) networks, with one VPC per project in a single region in Google Cloud. Your security team requires each VPC network to have private connectivity to the main on-premises location via a Partner Interconnect connection in the same region. To optimize cost and operations, the same connectivity must be shared with all projects. You must ensure that all traffic between different projects, on-premises locations, and the internet can be inspected using the same third-party appliances. What should you do?

  • A. Configure the third-party appliances with multiple interfaces and specific Partner Interconnect VLAN attachments per project. Create the relevant routes on the third-party appliances and VPC networks.
  • B. Configure the third-party appliances with multiple interfaces, with each interface connected to a separate VPC network. Create separate VPC networks for on-premises and internet connectivity. Create the relevant routes on the third-party appliances and VPC networks.
  • C. Consolidate all existing projects’ subnetworks into a single VPCreate separate VPC networks for on-premises and internet connectivity. Configure the third-party appliances with multiple interfaces, with each interface connected to a separate VPC network. Create the relevant routes on the third-party appliances and VPC networks.
  • D. Configure the third-party appliances with multiple interfaces. Create a hub VPC network for all projects, and create separate VPC networks for on-premises and internet connectivity. Create the relevant routes on the third-party appliances and VPC networks. Use VPC Network Peering to connect all projects’ VPC networks to the hub VPC. Export custom routes from the hub VPC and import on all projects’ VPC networks.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
playpacman
Highly Voted 1 year, 11 months ago
Vote for D as you cannot have more then 8 NICs on the appliance. Here we have 10 VPCs
upvoted 9 times
...
saraali
Most Recent 2 months, 2 weeks ago
Selected Answer: D
Option D is the most efficient, scalable, and cost-effective solution. It leverages a hub-and-spoke model with VPC peering, ensuring centralized routing, simplified management, and seamless traffic inspection via the third-party appliances.
upvoted 1 times
...
maxou
6 months, 2 weeks ago
A is wrong because I don't think you can have VLAN attachments from different projects B is wrong because you can't have 10 NICS on a Third Party appliance (max 8) C is wrong because each Third Party appliance interface must belong to a different VPC (so not possible to consolidate all in a single VPC) D is the right answer
upvoted 2 times
...
rmgsfs
1 year, 5 months ago
Selected Answer: D
D is right.
upvoted 2 times
...
Ben756
1 year, 7 months ago
Selected Answer: D
Option D is the recommended solution for this scenario. Option D involves creating a hub VPC network for all projects and creating separate VPC networks for on-premises and internet connectivity. This approach allows for the inspection of traffic between different projects, on-premises locations, and the internet using the same third-party appliances. It also allows for the export of custom routes from the hub VPC and their import on all projects’ VPC networks using VPC Network Peering. This solution provides a centralized management approach while ensuring the required level of security and isolation.
upvoted 3 times
...
pk349
1 year, 9 months ago
• D. Configure the third-party appliances with multiple interfaces. Create a hub VPC ***** network for all projects, and create separate VPC networks for on-premises and internet connectivity. Create the relevant routes on the third-party appliances and VPC networks. Use VPC Network Peering to connect all projects’ VPC networks to the hub VPC. Export custom routes from the hub VPC and import on all projects’ VPC networks.
upvoted 1 times
...
nosense
1 year, 11 months ago
Selected Answer: D
d is right. limit 8 nics
upvoted 3 times
...
pfilourenco
1 year, 11 months ago
Selected Answer: D
D as you cannot have more then 8 NICs on the appliance.
upvoted 2 times
...
ccieman2016
1 year, 11 months ago
Selected Answer: B
B is right. https://cloud.google.com/architecture/best-practices-vpc-design#multi-nic
upvoted 3 times
ccieman2016
1 year, 11 months ago
changed my answer, because limitation NICs. B is correct. Sorry
upvoted 1 times
ccieman2016
1 year, 11 months ago
D is correct, sorry again.
upvoted 4 times
AzureDP900
1 year, 10 months ago
D is right D. Configure the third-party appliances with multiple interfaces. Create a hub VPC network for all projects, and create separate VPC networks for on-premises and internet connectivity. Create the relevant routes on the third-party appliances and VPC networks. Use VPC Network Peering to connect all projects’ VPC networks to the hub VPC. Export custom routes from the hub VPC and import on all projects’ VPC networks.
upvoted 1 times
...
...
desertlotus1211
7 months, 1 week ago
wrong answer
upvoted 1 times
...
...
desertlotus1211
7 months, 1 week ago
This is not a shared VPC scenario. This is will not work, friend
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago