Exam Details

  • Exam Code
    :PROFESSIONAL-CLOUD-NETWORK-ENGINEER
  • Exam Name
    :Professional Cloud Network Engineer
  • Certification
    :Google Certifications
  • Vendor
    :Google
  • Total Questions
    :170 Q&As
  • Last Updated
    :Apr 27, 2024

Google Google Certifications PROFESSIONAL-CLOUD-NETWORK-ENGINEER Questions & Answers

  • Question 1:

    You are deploying a global external TCP load balancing solution and want to preserve the source IP address of the original layer 3 payload.

    Which type of load balancer should you use?

    A. HTTP(S) load balancer

    B. Network load balancer

    C. Internal load balancer

    D. TCP/SSL proxy load balancer

  • Question 2:

    You need to create a new VPC network that allows instances to have IP addresses in both the 10.1.1.0/24 network and the 172.16.45.0/24 network.

    What should you do?

    A. Configure global load balancing to point 172.16.45.0/24 to the correct instance.

    B. Create unique DNS records for each service that sends traffic to the desired IP address.

    C. Configure an alias-IP range of 172.16.45.0/24 on the virtual instances within the VPC subnet of 10.1.1.0/24.

    D. Use VPC peering to allow traffic to route between the 10.1.0.0/24 network and the 172.16.45.0/24 network.

  • Question 3:

    After a network change window one of your company's applications stops working. The application uses an on-premises database server that no longer receives any traffic from the application. The database server IP address is 10.2.1.25. You examine the change request, and the only change is that 3 additional VPC subnets were created. The new VPC subnets created are 10.1.0.0/16, 10.2.0.0/16, and 10.3.1.0/24. The on-premises router is advertising 10.0.0.0/8.

    What is the most likely cause of this problem?

    A. The less specific VPC subnet route is taking priority.

    B. The more specific VPC subnet route is taking priority.

    C. The on-premises router is not advertising a route for the database server.

    D. A cloud firewall rule that blocks traffic to the on-premises database server was created during the change.

  • Question 4:

    One instance in your VPC is configured to run with a private IP address only. You want to ensure that even if this instance is deleted, its current private IP address will not be automatically assigned to a different instance.

    In the GCP Console, what should you do?

    A. Assign a public IP address to the instance.

    B. Assign a new reserved internal IP address to the instance.

    C. Change the instance's current internal IP address to static.

    D. Add custom metadata to the instance with key internal-addressand value reserved.

  • Question 5:

    You are using the gcloud command line tool to create a new custom role in a project by copying a predefined role. You receive this error message:

    INVALID_ARGUMENT: Permission resourcemanager.projects.list is not valid

    What should you do?

    A. Add the resourcemanager.projects.getpermission, and try again.

    B. Try again with a different role with a new name but the same permissions.

    C. Remove the resourcemanager.projects.listpermission, and try again.

    D. Add the resourcemanager.projects.setIamPolicypermission, and try again.

  • Question 6:

    You need to centralize the Identity and Access Management permissions and email distribution for the WebServices Team as efficiently as possible.

    What should you do?

    A. Create a Google Group for the WebServices Team.

    B. Create a G Suite Domain for the WebServices Team.

    C. Create a new Cloud Identity Domain for the WebServices Team.

    D. Create a new Custom Role for all members of the WebServices Team.

  • Question 7:

    You want to use Partner Interconnect to connect your on-premises network with your VPC. You already have an Interconnect partner.

    What should you first?

    A. Log in to your partner's portal and request the VLAN attachment there.

    B. Ask your Interconnect partner to provision a physical connection to Google.

    C. Create a Partner Interconnect type VLAN attachment in the GCP Console and retrieve the pairing key.

    D. Run gcloud compute interconnect attachments partner update / -region --admin-enabled.

  • Question 8:

    You have enabled HTTP(S) load balancing for your application, and your application developers have reported that HTTP(S) requests are not being distributed correctly to your Compute Engine Virtual Machine instances. You want to find data about how the request are being distributed.

    Which two methods can accomplish this? (Choose two.)

    A. On the Load Balancer details page of the GCP Console, click on the Monitoring tab, select your backend service, and look at the graphs.

    B. In Stackdriver Error Reporting, look for any unacknowledged errors for the Cloud Load Balancers service.

    C. In Stackdriver Monitoring, select Resources > Metrics Explorer and search for https/ request_bytes_count metric.

    D. In Stackdriver Monitoring, select Resources > Google Cloud Load Balancers and review the Key Metrics graphs in the dashboard.

    E. In Stackdriver Monitoring, create a new dashboard and track the https/backend_request_count metric for the load balancer.

  • Question 9:

    You want to implement an IPSec tunnel between your on-premises network and a VPC via Cloud VPN. You need to restrict reachability over the tunnel to specific local subnets, and you do not have a device capable of speaking Border Gateway Protocol (BGP).

    Which routing option should you choose?

    A. Dynamic routing using Cloud Router

    B. Route-based routing using default traffic selectors

    C. Policy-based routing using a custom local traffic selector

    D. Policy-based routing using the default local traffic selector

  • Question 10:

    You are in the early stages of planning a migration to GCP. You want to test the functionality of your hybrid cloud design before you start to implement it in production. The design includes services running on a Compute Engine Virtual Machine instance that need to communicate to on-premises servers using private IP addresses. The on-premises servers have connectivity to the internet, but you have not yet established any Cloud Interconnect connections. You want to choose the lowest cost method of enabling connectivity between your instance and on-premises servers and complete the test in 24 hours.

    Which connectivity method should you choose?

    A. Cloud VPN

    B. 50-Mbps Partner VLAN attachment

    C. Dedicated Interconnect with a single VLAN attachment

    D. Dedicated Interconnect, but don't provision any VLAN attachments

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Google exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PROFESSIONAL-CLOUD-NETWORK-ENGINEER exam preparations and Google certification application, do not hesitate to visit our Vcedump.com to find your solutions here.