Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Google Associate Cloud Engineer Exam - Topic 4 Question 95 Discussion

You have deployed an application on a Compute Engine instance. An external consultant needs to access the Linux-based instance. The consultant is connected to your corporate network through a VPN connection, but the consultant has no Google account. What should you do?
C) Instruct the external consultant to generate an SSH key pair, and request the public key from the consultant. Add the public key to the instance yourself, and have the consultant access the instance through SSH with their private key.
A) Instruct the external consultant to use the gcloud compute ssh command line tool by using Identity-Aware Proxy to access the instance.
B) Instruct the external consultant to use the gcloud compute ssh command line tool by using the public IP address of the instance to access it.
D) Instruct the external consultant to generate an SSH key pair, and request the private key from the consultant. Add the private key to the instance yourself, and have the consultant access the instance through SSH with their public key.

Google Associate Cloud Engineer Exam - Topic 4 Question 95 Discussion

Actual exam question for Google's Associate Cloud Engineer exam
Question #: 95
Topic #: 4
[All Associate Cloud Engineer Questions]

You have deployed an application on a Compute Engine instance. An external consultant needs to access the Linux-based instance. The consultant is connected to your corporate network through a VPN connection, but the consultant has no Google account. What should you do?

Show Suggested Answer Hide Answer

Contribute your Thoughts:

0/2000 characters
An
8 months ago
I think C is the best choice, but I'm surprised it's not more common knowledge!
upvoted 0 times
...
Michell
8 months ago
Definitely not D, that’s a huge security no-no.
upvoted 0 times
...
Tamesha
8 months ago
Wait, why would you ever ask for a private key? That's risky!
upvoted 0 times
...
Olen
8 months ago
I disagree, using the public IP (Option B) is simpler.
upvoted 0 times
...
Alline
8 months ago
Option C is the way to go! SSH keys are secure.
upvoted 0 times
...
Earleen
9 months ago
Option D seems wrong to me; I remember we shouldn't share private keys. It has to be option C, right? But I hope I’m not mixing things up!
upvoted 0 times
...
Fannie
9 months ago
I feel like option B could work since the consultant is on a VPN, but I’m not sure if using the public IP is the best practice without a Google account.
upvoted 0 times
...
Rolland
9 months ago
I remember discussing Identity-Aware Proxy in relation to secure access, so option A might be a good choice too, but I’m not confident about the gcloud command specifics.
upvoted 0 times
...
Penney
9 months ago
I think option C sounds familiar, like something we practiced in class about SSH key management. But I'm not entirely sure if that's the only way to do it.
upvoted 0 times
...
Nikita
9 months ago
I'm a bit confused by the options here. Using the public IP address doesn't seem secure, and I'm not familiar with Identity-Aware Proxy. I think I'll go with option C to be on the safe side.
upvoted 0 times
...
Dominque
9 months ago
Option C sounds like the way to go. It's a common approach for granting external access to a Linux instance without requiring a Google account. I'll make sure to carefully follow the steps to add the consultant's public key.
upvoted 0 times
...
Roxanne
9 months ago
Hmm, I'm a bit unsure about this one. I'm not sure if using the public IP address is the best approach since the consultant doesn't have a Google account. Maybe I should look into the Identity-Aware Proxy option.
upvoted 0 times
...
Whitley
9 months ago
This seems straightforward. I'd go with option C - having the consultant generate an SSH key pair and providing the public key to access the instance.
upvoted 0 times
...
Clorinda
10 months ago
I definitely know a server template isn't required, but I can't remember if we need both the CSV upload and the device template specifically.
upvoted 0 times
...
Marleen
2 years ago
Haha, imagine the consultant trying to use the gcloud tool without a Google account? That's just asking for trouble. C is the clear winner here.
upvoted 0 times
Nakisha
2 years ago
Using SSH key pair with option C is the best choice for the consultant to access the Linux-based instance securely.
upvoted 0 times
...
Huey
2 years ago
Agreed, C is the most secure option for adding the consultant's SSH key to the instance.
upvoted 0 times
...
Bettina
2 years ago
Yeah, definitely don't want the consultant to struggle with gcloud without a Google account. C is the way to go.
upvoted 0 times
...
...
Tamekia
2 years ago
Hmm, I'm not sure about giving the consultant direct access to the instance's public IP. Option B feels a bit risky to me. C is the safer bet.
upvoted 0 times
Macy
2 years ago
It's important to prioritize security when granting access to external consultants.
upvoted 0 times
...
Arlette
2 years ago
Using SSH key pairs with option C is definitely a safer approach.
upvoted 0 times
...
Felicidad
2 years ago
I agree, giving direct access through the public IP does seem risky.
upvoted 0 times
...
...
Alpha
2 years ago
I agree with Pearline. Option C is the best choice here. The consultant doesn't need a Google account, and the SSH key pair is a simple solution.
upvoted 0 times
Eugene
2 years ago
Definitely. It's a straightforward solution for granting access to the Linux-based instance.
upvoted 0 times
...
My
2 years ago
Agreed. It's the most efficient way to grant access to the consultant.
upvoted 0 times
...
Lauran
2 years ago
I think so too. It's the most secure option as well.
upvoted 0 times
...
Olive
2 years ago
Option C is definitely the way to go. It's simple and doesn't require a Google account.
upvoted 0 times
...
...
Venita
2 years ago
That's a good point, Jaleesa. Convenience is important too. It really depends on the specific needs of the consultant.
upvoted 0 times
...
Jaleesa
2 years ago
I disagree, I believe option A is more convenient. Using Identity-Aware Proxy with gcloud compute ssh is easier for the consultant.
upvoted 0 times
...
Pearline
2 years ago
Option C is the way to go. The consultant can generate an SSH key pair, and you can add the public key to the instance. Secure and straightforward.
upvoted 0 times
Kimberlie
2 years ago
Exactly, it's a simple and secure solution for the consultant to access the instance.
upvoted 0 times
...
Nancey
2 years ago
Then you can add the public key to the instance yourself.
upvoted 0 times
...
Jeanice
2 years ago
I agree, having the consultant generate an SSH key pair is the way to go.
upvoted 0 times
...
Theron
2 years ago
Option C is the best choice. It's secure and easy.
upvoted 0 times
...
...
Venita
2 years ago
I think option C is the best choice. It's secure and allows the consultant to access the instance with their private key.
upvoted 0 times
...

Save Cancel