exam questions

Exam Professional Cloud Network Engineer All Questions

View all questions & answers for the Professional Cloud Network Engineer exam

Exam Professional Cloud Network Engineer topic 1 question 71 discussion

Actual exam question from Google's Professional Cloud Network Engineer
Question #: 71
Topic #: 1
[All Professional Cloud Network Engineer Questions]

You want to implement an IPSec tunnel between your on-premises network and a VPC via Cloud VPN. You need to restrict reachability over the tunnel to specific local subnets, and you do not have a device capable of speaking Border Gateway Protocol (BGP).
Which routing option should you choose?

  • A. Dynamic routing using Cloud Router
  • B. Route-based routing using default traffic selectors
  • C. Policy-based routing using a custom local traffic selector
  • D. Policy-based routing using the default local traffic selector
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
marekmatula2020
Highly Voted 3 years, 5 months ago
C is correct. A is incorrect because in on-prem is not BGP router
upvoted 13 times
...
Komal697
Highly Voted 1 year, 1 month ago
Selected Answer: C
Policy-based routing allows you to selectively apply routing policies based on defined criteria, such as source address, destination address, or protocol. In this scenario, you need to restrict reachability over the tunnel to specific local subnets, and you do not have a device capable of speaking Border Gateway Protocol (BGP). Therefore, you can create a custom local traffic selector for the on-premises subnets you want to allow traffic for, and then apply a policy to route traffic to these subnets over the Cloud VPN tunnel. Dynamic routing using Cloud Router (option A) is not applicable in this scenario as you do not have a device capable of speaking BGP. Route-based routing using default traffic selectors (option B) is not suitable because it does not allow for selective routing based on specific local subnets. Policy-based routing using the default local traffic selector (option D) is also not suitable because it would allow all traffic to flow over the VPN tunnel.
upvoted 8 times
...
Gurminderjit
Most Recent 4 months, 2 weeks ago
C is correct
upvoted 1 times
...
DelonBH
5 months ago
Selected Answer: C
Policy-based routing using a custom local traffic selector is the correct.
upvoted 1 times
...
bus_karan19
6 months, 2 weeks ago
Selected Answer: C
C is the best bet
upvoted 1 times
...
GCBC
8 months, 2 weeks ago
C. Policy-based routing using a custom local traffic selector
upvoted 1 times
...
mcjim
11 months, 2 weeks ago
Selected Answer: C
you need a custom local traffic selector in order to satisfy these requirements
upvoted 1 times
...
pk349
1 year, 3 months ago
• C. Policy-based routing using a *** custom local traffic selector
upvoted 1 times
...
AzureDP900
1 year, 5 months ago
C. Policy-based routing using a custom local traffic selector
upvoted 1 times
...
Mr_MIXER007
1 year, 6 months ago
Selected Answer: C
CCCCCCCCCC
upvoted 1 times
...
[Removed]
2 years, 1 month ago
https://cloud.google.com/network-connectivity/docs/vpn/concepts/choosing-networks-routing#ts-tun-routing C should be right.
upvoted 2 times
AzureDP900
1 year, 5 months ago
Agreed
upvoted 1 times
...
...
kumarp6
2 years, 3 months ago
Answer is : C
upvoted 1 times
...
Vidyasagar
3 years, 1 month ago
C is correct
upvoted 1 times
...
[Removed]
3 years, 5 months ago
Ans - C
upvoted 1 times
...
hjson821109
3 years, 5 months ago
It should be C
upvoted 1 times
...
lukedj87
3 years, 5 months ago
I'd go with C, specifying the local subnets to be used for the SAs in the tunnel
upvoted 1 times
...
superpane
3 years, 5 months ago
you do not have a device capable of speaking Border Gateway Protocol (BGP). it can't be A. I'd say C
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago