exam questions

Exam Professional Cloud Security Engineer All Questions

View all questions & answers for the Professional Cloud Security Engineer exam

Exam Professional Cloud Security Engineer topic 1 question 166 discussion

Actual exam question from Google's Professional Cloud Security Engineer
Question #: 166
Topic #: 1
[All Professional Cloud Security Engineer Questions]

You have been tasked with inspecting IP packet data for invalid or malicious content. What should you do?

  • A. Use Packet Mirroring to mirror traffic to and from particular VM instances. Perform inspection using security software that analyzes the mirrored traffic.
  • B. Enable VPC Flow Logs for all subnets in the VPC. Perform inspection on the Flow Logs data using Cloud Logging.
  • C. Configure the Fluentd agent on each VM Instance within the VPC. Perform inspection on the log data using Cloud Logging.
  • D. Configure Google Cloud Armor access logs to perform inspection on the log data.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
zellck
Highly Voted 6 months, 4 weeks ago
Selected Answer: A
A is the answer. https://cloud.google.com/vpc/docs/packet-mirroring Packet Mirroring clones the traffic of specified instances in your Virtual Private Cloud (VPC) network and forwards it for examination. Packet Mirroring captures all traffic and packet data, including payloads and headers.
upvoted 6 times
...
AzureDP900
Most Recent 5 months, 3 weeks ago
A is right
upvoted 2 times
...
AwesomeGCP
6 months, 2 weeks ago
Selected Answer: A
A. Use Packet Mirroring to mirror traffic to and from particular VM instances. Perform inspection using security software that analyzes the mirrored traffic.
upvoted 4 times
...
Random_Mane
7 months, 3 weeks ago
Selected Answer: A
A. https://cloud.google.com/vpc/docs/packet-mirroring#enterprise_security "Packet Mirroring clones the traffic of specified instances in your Virtual Private Cloud (VPC) network and forwards it for examination. Packet Mirroring captures all traffic and packet data, including payloads and headers."
upvoted 4 times
...
Baburao
7 months, 3 weeks ago
Sorry, it should be A, not B.
upvoted 4 times
...
Baburao
7 months, 3 weeks ago
Should be B. VPC FLow logs cannot capture packet information. https://cloud.google.com/vpc/docs/using-packet-mirroring
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago