Google Professional Cloud Network Engineer exam dumps

Google Professional Cloud Network Engineer practice question 727 of 790

Professional Cloud Network Engineer. Professional level, Google Cloud. Free question with the correct answer and a full explanation.

Google Professional Cloud Network Engineer Question 727

Select 3Google Cloud Platform

Your organization has set up a hybrid cloud infrastructure with an on-premises data center connected to a Virtual Private Cloud (VPC) in Google Cloud via a VPN. Recently, users have reported intermittent connectivity issues when accessing resources in the VPC from the on-premises network. As a Professional Cloud Network Engineer, you need to troubleshoot and resolve the issue. Which of the following are appropriate steps you can take to identify and resolve the problem?

  1. A

    Verify that the Cloud VPN tunnel is in an 'Established' state.

  2. B

    Check the on-premises firewall rules to ensure traffic to the VPC subnet IP range is allowed.

  3. C

    Increase the MTU size on the VPN to improve performance and resolve connectivity.

  4. D

    Review the routes in the VPC to confirm that the on-premises subnet is correctly advertised and reachable.

  5. E

    Disable encryption on the VPN tunnel to test for performance improvement.

Show answer and explanation

Correct answers: A, B, D

Explanation

When troubleshooting connectivity issues in a hybrid cloud setup with Cloud VPN, it's important to start with basic checks such as the VPN tunnel status, firewall rules, and route configurations. These steps help identify whether the issue lies in the network configuration or the VPN setup. Incorrect MTU settings and disabling encryption are not valid troubleshooting actions and can exacerbate issues or compromise security.

  • A. Correct.

    Verifying the Cloud VPN tunnel state is a crucial first step to ensure that the VPN connection is active and operational. If the tunnel is not in an 'Established' state, it indicates an issue with the connection setup.

  • B. Correct.

    Firewall rules on the on-premises side might block traffic to the VPC. Ensuring that appropriate rules are in place allows traffic to flow between the on-premises network and the VPC.

  • C. Incorrect.

    Increasing the MTU size on a VPN is not a valid troubleshooting step. In fact, an incorrect MTU size can cause packet fragmentation and lead to connectivity issues.

  • D. Correct.

    The routes in the VPC must be reviewed to confirm that traffic from the on-premises network is correctly routed to the appropriate VPC subnets. Missing or incorrect route configurations can cause connectivity failures.

  • E. Incorrect.

    Disabling encryption on the VPN tunnel is not recommended as it compromises security and is not a valid troubleshooting step for connectivity issues.

Timed practice exam

Take a Google Professional Cloud Network Engineer practice test under exam conditions

60 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam