Free CLOUD-DIGITAL-LEADER Exam Braindumps (page: 4)

Page 3 of 104

Your manager wants to restrict communication of all virtual machines with internet access; with resources in another network; or with a resource outside Compute Engine. It is expected that different teams will create new folders and projects in the near future. How would you restrict all virtual machines from having an external IP address?

  1. Define an organization policy at the root organization node to restrict virtual machine instances from having an external IP address
  2. Define an organization policy on all existing folders to define a constraint to restrict virtual machine instances from having an external IP address
  3. Define an organization policy on all existing projects to restrict virtual machine instances from having an external IP address
  4. Communicate with the different teams and agree that each time a virtual machine is created, it must be configured without an external IP address

Answer(s): A


Reference:

https://cloud.google.com/resource-manager/docs/organization-policy/overview



Your multinational organization has servers running mission-critical workloads on its premises around the world. You want to be able to manage these workloads consistently and centrally, and you want to stop managing infrastructure.
What should your organization do?

  1. Migrate the workloads to a public cloud
  2. Migrate the workloads to a central office building
  3. Migrate the workloads to multiple local co-location facilities
  4. Migrate the workloads to multiple local private clouds

Answer(s): A

Explanation:

Only public cloud offers to centrally manage the infra. for Pvt cloud it may not be possible to get same Pvt Cloud provider across the globe.



Your organization stores highly sensitive data on-premises that cannot be sent over the public internet. The data must be processed both on-premises and in the cloud.
What should your organization do?

  1. Configure Identity-Aware Proxy (IAP) in your Google Cloud VPC network
  2. Create a Cloud VPN tunnel between Google Cloud and your data center
  3. Order a Partner Interconnect connection with your network provider
  4. Enable Private Google Access in your Google Cloud VPC network

Answer(s): C

Explanation:

After the service provider provisions your connection, you can start passing traffic between your networks by using the service provider's network.


Reference:

https://cloud.google.com/network-connectivity/docs/interconnect/concepts/partner- overview



Your company's development team is building an application that will be deployed on Cloud Run. You are designing a CI/CD pipeline so that any new version of the application can be deployed in the fewest number of steps possible using the CI/CD pipeline you are designing. You need to select a storage location for the images of the application after the CI part of your pipeline has built them.
What should you do?

  1. Create a Compute Engine image containing the application
  2. Store the images in Container Registry
  3. Store the images in Cloud Storage
  4. Create a Compute Engine disk containing the application

Answer(s): B


Reference:

https://cloud.google.com/container-registry/docs/pushing-and-pulling






Post your Comments and Discuss Google CLOUD-DIGITAL-LEADER exam with other Community members:

CLOUD-DIGITAL-LEADER Discussions & Posts