You are using a third-party next-generation firewall to inspect traffic. You created a custom route of 0.0.0.0/0 to route egress traffic to the firewall. You want to allow your VPC instances without public IP addresses to access the BigQuery and Cloud Pub/Sub APIs, without sending the traffic through the firewall. Which two actions should you take? (Choose two.)
A) Turn on Private Google Access at the subnet level.
B) Turn on Private Google Access at the VPC level.
C) Turn on Private Services Access at the VPC level.
D) Create a set of custom static routes to send traffic to the external IP addresses of Google APIs and services via the default internet gateway.
E) Create a set of custom static routes to send traffic to the internal IP addresses of Google APIs and services via the default internet gateway.
Correct Answer:
Verified
Q1: You are designing a Google Kubernetes Engine
Q2: You decide to set up Cloud NAT.
Q3: You have a web application that is
Q5: Your company offers a popular gaming service.
Q6: You are using a 10-Gbps direct peering
Q7: You are designing a shared VPC architecture.
Q8: Your company is working with a partner
Q9: You need to restrict access to your
Q10: You converted an auto mode VPC network
Q11: Your company has recently expanded their EMEA-based
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents