🔥 40% Off Crucial Exams Memberships — Deal ends today!

1 hour, 27 minutes remaining!

GCP Associate Cloud Engineer Practice Question

Your team has deployed several Compute Engine instances in a custom VPC subnet that has no public IP addresses assigned to the VMs. The servers need to download operating-system updates from external repositories on the internet, but must remain inaccessible from the internet. You want a managed, highly available solution that requires the least ongoing maintenance. What should you do?

  • Deploy a single Compute Engine VM with two NICs, enable IP forwarding, and configure it as a manual NAT gateway for the subnet.

  • Enable Private Google Access on the subnet so the VMs can reach external update servers without external IP addresses.

  • Reserve and assign static external IP addresses to each VM and rely on egress-only firewall rules to block inbound traffic.

  • Configure a Cloud NAT gateway on an existing Cloud Router and enable it for the subnet.

GCP Associate Cloud Engineer
Ensuring successful operation of a cloud solution
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot