<< Prev Question Next Question >>

Question 17/80

Your organization is implementing a new security policy to control how firewall rules are applied to control flows between virtual machines (VMs). Using Google-recommended practices, you need to set up a firewall rule to enforce strict control of traffic between VM A and VM B. You must ensure that communications flow only from VM A to VM B within the VPC, and no other communication paths are allowed. No other firewall rules exist in the VPC. Which firewall rule should you configure to allow only this communication path?

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (80q)
Question 1: You are using the gcloud command line tool to create a new c...
Question 2: You need to enable Private Google Access for use by some sub...
Question 3: You are designing a new global application using Compute Eng...
Question 4: Your organization's security policy requires that all intern...
Question 5: In your Google Cloud organization, you have two folders: Dev...
Question 6: You have a Cloud Storage bucket in Google Cloud project XYZ....
Question 7: Your organization has a single project that contains multipl...
Question 8: You need to configure the Border Gateway Protocol (BGP) sess...
Question 9: You are designing a shared VPC architecture. Your network an...
Question 10: You are using a 10-Gbps direct peering connection to Google ...
Question 11: You have deployed a proof-of-concept application by manually...
Question 12: You are trying to update firewall rules in a shared VPC for ...
Question 13: Your company is running out of network capacity to run a cri...
Question 14: In your project my-project, you have two subnets in a Virtua...
Question 15: You recently deployed your application in Google Cloud. You ...
Question 16: Your company has a single Virtual Private Cloud (VPC) networ...
Question 17: Your organization is implementing a new security policy to c...
Question 18: You are responsible for configuring firewall policies for yo...
Question 19: You are designing an IP address scheme for new private Googl...
Question 20: You have the following private Google Kubernetes Engine (GKE...
Question 21: You are disabling DNSSEC for one of your Cloud DNS-managed z...
Question 22: Your company's on-premises network is connected to a VPC usi...
Question 23: You recently noticed a recurring daily spike in network usag...
Question 24: You are migrating to Cloud DNS and want to import your BIND ...
Question 25: You are configuring an HA VPN connection between your Virtua...
Question 26: Your on-premises data center has 2 routers connected to your...
Question 27: Your company has defined a resource hierarchy that includes ...
Question 28: One instance in your VPC is configured to run with a private...
Question 29: You want to use Partner Interconnect to connect your on-prem...
Question 30: You have an application running on Compute Engine that uses ...
Question 31: You ate planning to use Terraform to deploy the Google Cloud...
Question 32: You recently deployed two network virtual appliances in us-c...
Question 33: You have the networking configuration shown in the diagram. ...
Question 34: You are responsible for designing a new connectivity solutio...
Question 35: You have enabled HTTP(S) load balancing for your application...
Question 36: You are in the process of deploying an internal HTTP(S) load...
Question 37: You want Cloud CDN to serve the https://www.example.com/imag...
Question 38: You are deploying an application that runs on Compute Engine...
Question 39: After a network change window one of your company's applicat...
Question 40: You need to give each member of your network operations team...
Question 41: Your company has a Virtual Private Cloud (VPC) with two Dedi...
Question 42: Your company is working with a partner to provide a solution...
Question 43: You want to implement an IPSec tunnel between your on-premis...
Question 44: You have recently been put in charge of managing identity an...
Question 45: Your company is planning a migration to Google Kubernetes En...
Question 46: You need to centralize the Identity and Access Management pe...
Question 47: You created a VPC network named Retail in auto mode. You wan...
Question 48: You configured Cloud VPN with dynamic routing via Border Gat...
Question 49: You need to enable Cloud CDN for all the objects inside a st...
Question 50: You have two Google Cloud projects in a perimeter to prevent...
Question 51: You have a storage bucket that contains two objects. Cloud C...
Question 52: Your organization has Compute Engine instances in us-east1, ...
Question 53: You are designing a Partner Interconnect hybrid cloud connec...
Question 54: You suspect that one of the virtual machines (VMs) in your d...
Question 55: Your company's security team wants to limit the type of inbo...
Question 56: You recently deployed Compute Engine instances in regions us...
Question 57: Your company recently migrated to Google Cloud in a Single r...
Question 58: You are designing a hybrid cloud environment. Your Google Cl...
Question 59: You are designing a hub-and-spoke network architecture for y...
Question 60: You have configured a service on Google Cloud that connects ...
Question 61: You create multiple Compute Engine virtual machine instances...
Question 62: You are responsible for enabling Private Google Access for t...
Question 63: You work for a multinational enterprise that is moving to GC...
Question 64: You need to establish network connectivity between three Vir...
Question 65: Your end users are located in close proximity to us-east1 an...
Question 66: You are using a third-party next-generation firewall to insp...
Question 67: All the instances in your project are configured with the cu...
Question 68: Your company is planning a migration to Google Kubernetes En...
Question 69: You are designing a hybrid cloud environment for your organi...
Question 70: You are adding steps to a working automation that uses a ser...
Question 71: You just finished your company's migration to Google Cloud a...
Question 72: You want to use Cloud Interconnect to connect your on-premis...
Question 73: You are configuring a new instance of Cloud Router in your O...
Question 74: You have the following firewall ruleset applied to all insta...
Question 75: You need to define an address plan for a future new GKE clus...
Question 76: Your company's security team tends to use managed services w...
Question 77: You have created an HTTP(S) load balanced service. You need ...
Question 78: You have the following routing design. You discover that Com...
Question 79: You have provisioned a Partner Interconnect connection to ex...
Question 80: You have deployed a new internal application that provides H...