Google Professional Cloud Network Engineer exam dumps

Google Professional Cloud Network Engineer practice question 703 of 790

Professional Cloud Network Engineer. Professional level, Google Cloud. Free question with the correct answer and a full explanation.

Google Professional Cloud Network Engineer Question 703

Single answerGoogle Cloud Platform

Your organization needs to establish a secure site-to-site data transfer between your on-premises data center and Google Cloud. The connection must handle high throughput workloads with minimal latency while ensuring encryption during transit. Which solution would best meet these requirements?

  1. A

    Set up a Cloud VPN tunnel using IPsec between your on-premises data center and Google Cloud.

  2. B

    Use a Cloud Interconnect with a private connection and manage encryption at the application layer.

  3. C

    Deploy a Cloud NAT gateway to route traffic securely between your on-premises data center and Google Cloud.

  4. D

    Create a public HTTP endpoint in Google Cloud and use HTTPS for secure data transfer.

Show answer and explanation

Correct answer: A

Explanation

Cloud VPN is the most suitable solution for establishing secure site-to-site data transfer between your on-premises data center and Google Cloud. It uses IPsec protocols to encrypt data in transit, provides secure communication, and supports high throughput. While Cloud Interconnect offers high throughput, it lacks built-in encryption, requiring additional configuration. Other options like Cloud NAT and public HTTP endpoints are not designed for secure site-to-site connectivity.

  • A. Correct.

    This is the correct option. Cloud VPN provides a secure IPsec tunnel to establish site-to-site connectivity, ensuring high throughput and encryption during transit.

  • B. Incorrect.

    While Cloud Interconnect provides a dedicated private connection with high throughput, it does not inherently provide encryption. You would need to implement encryption separately, which adds complexity.

  • C. Incorrect.

    Cloud NAT is used for outbound internet traffic from private Google Cloud resources, not for establishing site-to-site connections.

  • D. Incorrect.

    Using a public HTTP endpoint with HTTPS provides encryption, but it is not suitable for site-to-site data transfer as it lacks the necessary dedicated, secure tunnel for such use cases.

Timed practice exam

Take a Google Professional Cloud Network Engineer practice test under exam conditions

60 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam