Tüm alıştırma soruları
1591 soru
An enterprise architecture team is configuring a custom-mode Virtual Private Cloud (VPC) network in Google Cloud. The primary subnet in `us-east4` is currently assigned the IPv4 CIDR block . The team plans to deploy a Google Kubernetes Engine (GKE) cluster in this subnet and must define a secondary IPv4 CIDR range for Pod IP address allocation. Furthermore, long-term capacity requirements mandate that the primary subnet range must be expandable to in the future without recreating the subnet, modifying existing secondary ranges, or creating IP range overlaps. Which secondary IPv4 CIDR range should be assigned to the Pods to satisfy all requirements?
Match each Google Cloud storage option or persistent disk type to its primary architectural capability and ideal workload scenario.
Soldaki öğeye tıklayın, sonra eşleşen sağdaki öğeye tıklayın
Öğeler
Eşleşmeler
An enterprise analytics team is designing the infrastructure for a memory-intensive transactional database on Google Compute Engine. Benchmarking indicates the database requires of RAM and . The database is strictly stateful, operates 24/7 with zero tolerance for ungraceful instance terminations, and is projected to run continuously for at least three years. Which machine family and purchasing model configuration should the cloud engineer select to meet these operational and financial requirements?
A software architecture team is planning a serverless deployment on Google Cloud for a microservice that runs a third-party C++ binary packaged inside a custom Docker container. The service receives incoming HTTP webhooks and must handle multiple concurrent requests per container instance to maximize resource efficiency and reduce operational costs. Which compute platform should the team select?
A data analyst needs read-only access to view tables and execute queries within existing BigQuery datasets in a Google Cloud project, without the ability to modify table data or create new datasets. Following Google Cloud security best practices for least privilege, which IAM role should you grant to the analyst?
An engineer is planning the initial virtual private cloud (VPC) topology for an enterprise workload in Google Cloud. Which two statements accurately describe Google Cloud VPC networks and subnets? (Select TWO answers.)
Geçerli olan tümünü seçin
A cloud administrator needs to delegate authority to a junior engineer to link an unlinked Google Cloud project to an organization's Cloud Billing Account using least-privilege IAM roles. Arrange the steps in the correct chronological order required to grant permissions and complete the linking process.
Öğeleri doğru sıraya koymak için sürükleyin
A lead cloud engineer at a financial firm is preparing to launch a risk-modeling batch processing cluster in project `risk-analytics-prod`. The workload requires provisioning 128 N2 CPUs in the `us-west1` region, but deployment fails because the project's current regional limit is 32 N2 CPUs. The engineer must request an adjustment to accommodate the workload using the principle of least privilege. Which action should be taken to request the required capacity increase?
A system administrator needs to deploy a fully managed relational database on Google Cloud to support an existing web application that uses a standard MySQL engine. Which Google Cloud database service best satisfies this requirement with minimal operational overhead?
An organization is designing a Google Cloud networking architecture for a enterprise system requiring workload deployment across two distinct regions: `us-central1` and `europe-west1`. Compute instances in both regions must communicate securely with each other using internal private IP addresses over Google's global network backbone. Which VPC network and subnet design strategy should the cloud engineer implement?
An architect is configuring an estimate in the Google Cloud Pricing Calculator for a fault-tolerant, stateless processing workload on Compute Engine that can handle unexpected instance termination. Which VM provisioning model should be selected in the calculator to achieve the maximum cost savings?
A startup is planning to deploy a containerized application on Google Kubernetes Engine (GKE). The DevOps team wants a fully managed solution where Google automatically provisions, configures, and scales the underlying node infrastructure based on pod specifications, eliminating the need to manage node pools manually. Which GKE cluster operational mode should the team select?
You have created a Google Kubernetes Engine (GKE) cluster named `demo-cluster` in zone `us-central1-a`. You open a terminal and run `kubectl get nodes`, but the command fails because your local authentication context is missing. Which `gcloud` command must you execute to update your kubeconfig file with credentials for this cluster?
A cloud administrator is establishing governance for a newly acquired business unit in Google Cloud. The administrator needs to set up a dedicated hierarchy branch under the organization node, enforce regional deployment boundaries using organization policy constraints, and place both new and existing workloads into this branch. What is the correct sequence of steps to establish this resource hierarchy and governance structure?
Öğeleri doğru sıraya koymak için sürükleyin
A financial services organization is managing a custom-mode Virtual Private Cloud (VPC) network in Google Cloud. The primary subnet in `europe-west1` is configured with the IP block (). Two other regional subnets in the same VPC use () and (). Due to rapid scaling, the architecture team must expand the primary IP range of the `europe-west1` subnet to support at least 3,500 internal compute instances without recreating the subnet or causing downtime for existing workloads. Which CIDR modification plan accomplishes this expansion without creating an IP range collision?
A DevOps engineer creates a new Google Kubernetes Engine (GKE) cluster named `prod-cluster` in the `us-central1` region. From a newly provisioned administrator workstation, the engineer attempts to deploy a application workload using `kubectl apply -f deployment.yaml`. However, the command fails with an error indicating that the connection to server `localhost:8080` was refused. Which action should the engineer take to allow `kubectl` to successfully communicate with the GKE cluster?
An enterprise is planning a multi-region Google Cloud deployment that connects to an on-premises data center using Cloud Interconnect. The environment must host Google Kubernetes Engine (GKE) clusters using alias IPs and prevent IP address collisions. Sequence the following steps in the correct order to properly plan and implement the Virtual Private Cloud (VPC) network architecture from initial network assessment to hybrid connectivity configuration.
Öğeleri doğru sıraya koymak için sürükleyin
A DevOps automation principal needs to grant a service account the minimum necessary IAM roles and execute the appropriate gcloud commands to create a new workload project inside a corporate folder and link it to an existing Cloud Billing Account. Arrange the steps in the correct operational sequence from first to last to complete this task under the principle of least privilege.
Öğeleri doğru sıraya koymak için sürükleyin
An Associate Cloud Engineer needs to configure granular access controls for an automated deployment service account by creating a new project-level custom IAM role and granting it to the service account. Which sequence of steps represents the correct procedure to implement this using the gcloud command-line tool?
Öğeleri doğru sıraya koymak için sürükleyin
A cloud administration team needs to expand the primary IP address range of an existing subnet in a custom-mode Virtual Private Cloud (VPC) network. The subnet is currently configured with the primary CIDR block . Which CIDR range can be specified to successfully expand this existing subnet's primary IP range?