🔥 40% Off Crucial Exams Memberships — Deal ends today!

46 minutes, 36 seconds remaining!

GCP Professional Cloud Security Engineer Practice Question

Your e-commerce platform is fronted by an external HTTP(S) load balancer protected by Cloud Armor. Logs show credential-stuffing bots sending bursts of more than 50 POST requests per minute to the /login endpoint from the same source IP address. Legitimate customers rarely exceed 10 login attempts per minute, and other paths such as /catalog must not be throttled. You need to block offending IPs for 15 minutes once they exceed the threshold, without affecting normal traffic. Which Cloud Armor configuration best satisfies these requirements?

  • Populate a Cloud Armor denylist with attacker IP addresses obtained from a daily refreshed threat-intelligence feed targeting the login service.

  • Create an allow rule that permits only 10 requests per minute to /login and place a lower-priority default deny rule for all other traffic.

  • Enable Cloud Armor Adaptive Protection in standard mode so that it automatically throttles excessive traffic across all URLs.

  • Add a Cloud Armor rate-based rule that matches requests where the path starts with /login and the method is POST, sets a threshold of 50 requests per 60 seconds per client IP, and applies a deny action with a 900-second ban.

GCP Professional Cloud Security Engineer
Securing communications and establishing boundary protection
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot