Question 56

You are adding steps to a working automation that uses a service account to authenticate. You need to drive the automation the ability to retrieve files from a Cloud Storage bucket. Your organization requires using the least privilege possible.
What should you do?
  • Question 57

    You have deployed a proof-of-concept application by manually placing instances in a single Compute Engine zone. You are now moving the application to production, so you need to increase your application availability and ensure it can autoscale.
    How should you provision your instances?
  • Question 58

    Your on-premises data center has 2 routers connected to your GCP through a VPN on each router. All applications are working correctly; however, all of the traffic is passing across a single VPN instead of being load-balanced across the 2 connections as desired.
    During troubleshooting you find:
    * Each on-premises router is configured with the same ASN.
    * Each on-premises router is configured with the same routes and priorities.
    * Both on-premises routers are configured with a VPN connected to a single Cloud Router.
    * The VPN logs have no-proposal-chosen lines when the VPNs are connecting.
    * BGP session is not established between one on-premises router and the Cloud Router.
    What is the most likely cause of this problem?
  • Question 59

    You have an application hosted on a Compute Engine virtual machine instance that cannot communicate with a resource outside of its subnet. When you review the flow and firewall logs, you do not see any denied traffic listed.
    During troubleshooting you find:
    * Flow logs are enabled for the VPC subnet, and all firewall rules are set to log.
    * The subnetwork logs are not excluded from Stackdriver.
    * The instance that is hosting the application can communicate outside the subnet.
    * Other instances within the subnet can communicate outside the subnet.
    * The external resource initiates communication.
    What is the most likely cause of the missing log lines?
  • Question 60

    You have a web application that is currently hosted in the us-central1 region. Users experience high latency when traveling in Asia. You've configured a network load balancer, but users have not experienced a performance improvement. You want to decrease the latency.
    What should you do?