🔥 40% Off Crucial Exams Memberships — Deal ends today!

1 hour, 57 minutes remaining!

GCP Associate Cloud Engineer Practice Question

Your organization just created a custom-mode VPC network named prod-net and added a single subnet with the IP range 10.10.0.0/24 in us-central1. A VM instance in the subnet can access the public Internet, but attempts to SSH in from the corporate data-center's public IP address consistently time out. No other networking resources have been configured. To enable administrators to connect over TCP port 22 from the data-center, which fundamental VPC component must you create in prod-net without changing the existing subnet or VM configuration?

  • Create a firewall rule that allows TCP port 22 from the data-center's public IP range.

  • Create a custom static route that targets the VM's internal IP range.

  • Enable VPC Flow Logs on the subnet to permit inbound connections.

  • Attach a Cloud Router to prod-net to advertise on-premises prefixes.

GCP Associate Cloud Engineer
Setting up a cloud solution environment
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot