GCP PCA · Question 23 · Network, Storage, Compute
An enterprise has a central IT team and multiple independent development teams. The central IT team must control all network resources (subnets, firewalls, VPNs), while the development teams need full control over creating VMs and GKE clusters in their own projects. How should you design the GCP network architecture?
An enterprise has a central IT team and multiple independent development teams. The central IT team must control all network resources (subnets, firewalls, VPNs), while the development teams need full control over creating VMs and GKE clusters in their own projects. How should you design the GCP network architecture?
Answer options:
Create a separate VPC in each development team's project and connect them using VPC Peering.
Create a Shared VPC in a Host Project managed by central IT, and attach the development teams' projects as Service Projects.
Place all resources (network and compute) in a single project and use IAM conditions to restrict access.
Use Cloud VPN to connect the development projects to a central IT project.
How to approach this question
Full Answer
Common mistakes
Practice the full GCP Professional Cloud Architect Practice Exam 1
50 questions · hints · full answers · grading
Expert