Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.
Your organization stores highly sensitive data on-premises that cannot be sent over the public internet. The data must be processed both on-premises and in the cloud. What should your organization do?
A.
Configure Identity-Aware Proxy (IAP) in your Google Cloud VPC network
B.
Create a Cloud VPN tunnel between Google Cloud and your data center
C.
Order a Partner Interconnect connection with your network provider
D.
Enable Private Google Access in your Google Cloud VPC network
Suggested Answer:C🗳️
After the service provider provisions your connection, you can start passing traffic between your networks by using the service provider's network. Reference: https://cloud.google.com/network-connectivity/docs/interconnect/concepts/partner-overview
Go for B.
Always we have to review the statement carefully.
It says:
"hightly sensitive data".
Due to Cloud VPN, which encrypt data is the better option.
Partner interconnect:
https://cloud.google.com/network-connectivity/docs/how-to/choose-product
The connection between your network and Google's network is not encrypted. If you require additional data security, use application-level encryption or your own VPN. Currently, you can't use Cloud VPN with Partner Interconnect, but you can use your own VPN solution.
Option B allows for secure communication between your on-premises network and the Google Cloud environment, ensuring that sensitive data remains protected during transit.
The correct answer is D. Enable Private Google Access in your Google Cloud VPC network.
C - This option provides a dedicated connection with high bandwidth and low latency, suitable for large data transfers. However, it may be overkill if the primary concern is securely transferring sensitive data.
B. Create a Cloud VPN tunnel between Google Cloud and your data center
To securely process highly sensitive data both on-premises and in the cloud without sending it over the public internet, your organization should create a Cloud VPN tunnel between Google Cloud and your data center. This establishes a secure, encrypted connection between your on-premises network and your Google Cloud Virtual Private Cloud (VPC). The VPN tunnel ensures that data remains protected during transit and allows for secure communication between your on-premises environment and the cloud.
The answer to your question is B. Create a Cloud VPN tunnel between Google Cloud and your data center.
A Cloud VPN tunnel is a secure, private connection between your on-premises network and your Google Cloud Platform (GCP) network. It uses the internet to connect your networks, but it encrypts all traffic over the connection, ensuring that your data remains private and secure.
Option B (Create a Cloud VPN tunnel) might seem like a plausible choice for connecting on-premises to Google Cloud, but it is essential to note that VPNs usually use the public internet to create encrypted connections, which contradicts the requirement that the data cannot be sent over the public internet. Partner Interconnect, on the other hand, establishes a private connection, making it a more suitable option in this case.
Set up a dedicated private network connection between your on-premises infrastructure and Google Cloud Platform (GCP). This can be achieved using Dedicated Interconnect or Partner Interconnect, which provide direct, private, and secure connections between your on-premises data center and GCP's network.
C - A Partner Interconnect connection allows you to establish a dedicated, private, and secure network connection between your on-premises data center and Google Cloud. This connection operates outside of the public internet, providing a direct link with high bandwidth and low latency.
VPN is private in nature however requirement is data should not be going out to the public/internet hence answer is C even though there is an involve third party Interconnect is still going directly between your equipment and google cloud server. Think of it simply as a LAN cable difference is it is situated on a data center
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
egvidal
Highly Voted 2 years, 5 months agoharoldbenites
Highly Voted 2 years agoSreekarM
1 year, 8 months agojoe03
Most Recent 1 day, 19 hours agoKarpagam_S
1 month, 2 weeks agocloudinvader
4 months, 3 weeks agosivakarthick16
6 months, 3 weeks agoGuru4Cloud
7 months agochai_gpt
8 months agochai_gpt
8 months ago__rajan__
9 months agomdsarfraz69
9 months, 2 weeks agohireshgupt
11 months, 2 weeks agoMwafrika
11 months, 3 weeks agocookieMr
1 year agosjain93
1 year, 1 month agodeCalle
1 year, 2 months agoSp4nner
1 year, 2 months ago