Big Cyber Monday Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Google Cloud Certified - Associate Cloud Engineer Associate-Cloud-Engineer Question # 88 Topic 9 Discussion

Google Cloud Certified - Associate Cloud Engineer Associate-Cloud-Engineer Question # 88 Topic 9 Discussion

Associate-Cloud-Engineer Exam Topic 9 Question 88 Discussion:
Question #: 88
Topic #: 9

You are deploying a large multi-tiered application with more than 1,000 IP addresses in a Google Cloud project that needs to be securely isolated. The application includes the:

    web tier with frontend servers for public traffic

    application tier with servers running core application logic that only need access from the web tier and

    database tier with database servers that only need access from the application tierYou want to minimize cost, complexity, and administrative overhead in the network architecture. What should you do?

    database tier with database servers that only need access from the application tierYou want to minimize cost, complexity, and administrative overhead in the network architecture. What should you do?


A.

Create a /24 Shared VPC with separate subnets for each tier. Use firewall rules that reference network tags to control traffic.


B.

Create one custom mode /16 VPC with three subnets. Place each tier in its own subnet and use firewall rules that reference IP subnets to control traffic.


C.

Deploy each tier into a separate custom mode VPC. Use VPC Network Peering to securely connect each Custom mode VPC. Manage firewall rules individually in each VPC.


D.

Deploy each tier in a /24 VPC by using network tags to identify instances. Implement firewall rules for fine-grained network segmentation.


Get Premium Associate-Cloud-Engineer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.