Weekend Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Exam Professional-Cloud-Architect All Questions
Exam Professional-Cloud-Architect All Questions

View all questions & answers for the Professional-Cloud-Architect exam

Google Cloud Certified Professional-Cloud-Architect Question # 4 Topic 1 Discussion

Professional-Cloud-Architect Exam Topic 1 Question 4 Discussion:
Question #: 4
Topic #: 1

For this question, refer to the EHR Healthcare case study. In the past, configuration errors put public IP addresses on backend servers that should not have been accessible from the Internet. You need to ensure that no one can put external IP addresses on backend Compute Engine instances and that external IP addresses can only be configured on frontend Compute Engine instances. What should you do?


A.

Create an Organizational Policy with a constraint to allow external IP addresses only on the frontend Compute Engine instances.


B.

Revoke the compute.networkAdmin role from all users in the project with front end instances.


C.

Create an Identity and Access Management (IAM) policy that maps the IT staff to the compute.networkAdmin role for the organization.


D.

Create a custom Identity and Access Management (IAM) role named GCE_FRONTEND with the compute.addresses.create permission.


Get Premium Professional-Cloud-Architect Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.