Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Google Professional Cloud Security Engineer Exam - Topic 4 Question 39 Discussion

You plan to use a Google Cloud Armor policy to prevent common attacks such as cross-site scripting (XSS) and SQL injection (SQLi) from reaching your web application's backend. What are two requirements for using Google Cloud Armor security policies? (Choose two.)
B) Google Cloud Armor Policy rules can only match on Layer 7 (L7) attributes. and E) The load balancer must be an external HTTP(S) load balancer.
A) The load balancer must be an external SSL proxy load balancer.
C) The load balancer must use the Premium Network Service Tier.
D) The backend service's load balancing scheme must be EXTERNAL.

Google Professional Cloud Security Engineer Exam - Topic 4 Question 39 Discussion

Actual exam question for Google's Professional Cloud Security Engineer exam
Question #: 39
Topic #: 4
[All Professional Cloud Security Engineer Questions]

You plan to use a Google Cloud Armor policy to prevent common attacks such as cross-site scripting (XSS) and SQL injection (SQLi) from reaching your web application's backend. What are two requirements for using Google Cloud Armor security policies? (Choose two.)

Show Suggested Answer Hide Answer
Suggested Answer: B, E

Contribute your Thoughts:

0/2000 characters
Shelba
10 months ago
I thought the Premium Network Service Tier was optional, not required.
upvoted 0 times
...
Andra
10 months ago
The load balancer needs to be external, right?
upvoted 0 times
...
Melita
11 months ago
Wait, can it only match on Layer 7 attributes? Sounds limiting.
upvoted 0 times
...
Hubert
11 months ago
Totally agree, that's a key requirement!
upvoted 0 times
...
Nobuko
11 months ago
The load balancer must be an external HTTP(S) load balancer.
upvoted 0 times
...
Rory
11 months ago
I believe the backend service's load balancing scheme must be EXTERNAL, but I need to double-check that with the documentation.
upvoted 0 times
...
Lon
11 months ago
I feel like Google Cloud Armor policies only match on Layer 7 attributes, but I might be mixing that up with another service.
upvoted 0 times
...
Nathan
11 months ago
I remember something about needing the load balancer to use the Premium Network Service Tier, but I can't recall if that's definitely a requirement for Google Cloud Armor.
upvoted 0 times
...
Carmen
11 months ago
I think one requirement is that the load balancer must be an external HTTP(S) load balancer, but I'm not entirely sure.
upvoted 0 times
...
Celestina
11 months ago
I'm feeling pretty confident about this one. The -i flag with grep is the way to go to print all the lines containing "Yellow" in a case-insensitive manner.
upvoted 0 times
...
Cassie
11 months ago
I think the answer might be D, but I recall there were quite a few options we studied that included Webex.
upvoted 0 times
...
Val
11 months ago
Hmm, I'm a little unsure about this one. The options seem to cover a range of different TOGAF concepts, so I'll need to think it through carefully before selecting an answer.
upvoted 0 times
...
Georgiann
11 months ago
Okay, based on the information provided, I think option B is the correct answer. Modifying the router priorities should affect the DR election, with R1 becoming the DR and R2 becoming the Backup DR.
upvoted 0 times
...

Save Cancel