GCP PCA · Question 42 · Domain 3: Designing for Security and Compliance
You are designing a secure data perimeter for a highly regulated project. You have implemented VPC Service Controls (VPC SC). You also have VMs in a private subnet (no external IPs) that need to access Cloud Storage buckets within the perimeter. Which TWO configurations are required to make this work? (Select TWO)
Answer options:
Assign a public IP address to the VMs.
Enable Private Google Access on the subnet where the VMs reside.
Configure Cloud NAT for the subnet.
Create an Ingress rule in VPC SC to allow traffic from the internet.
Ensure the VPC network containing the VMs is added to the VPC Service Controls perimeter.
50 questions · hints · full answers · grading