Topic 1 Question 114
Your company uses the Firewall Insights feature in the Google Network Intelligence Center. You have several firewall rules applied to Compute Engine instances. You need to evaluate the efficiency of the applied firewall ruleset. When you bring up the Firewall Insights page in the Google Cloud Console, you notice that there are no log rows to display. What should you do to troubleshoot the issue?
Enable Virtual Private Cloud (VPC) flow logging.
Enable Firewall Rules Logging for the firewall rules you want to monitor.
Verify that your user account is assigned the compute.networkAdmin Identity and Access Management (IAM) role.
Install the Google Cloud SDK, and verify that there are no Firewall logs in the command line output.
解説
ユーザの投票
コメント(17)
Answer is B when you create a firewall rule there is an option for firewall rule logging on/off. It is set to off by default. To get firewall insights or view the logs for a specific firewall rule you need to enable logging while creating the rule or you can enable it by editing that rule. https://cloud.google.com/network-intelligence-center/docs/firewall-insights/how-to/using-firewall-insights#enabling-fw-rules-logging
👍 28nohel2021/07/04B. Enable Firewall Rules Logging for the firewall rules you want to monitor.
👍 14victory1082021/07/10The Answer is B
Just had my exam today with a pass, this question was in the exam. Dated 31/12/22 Thanks to this site it was by far my most valuable
👍 3windsor_432022/12/31
シャッフルモード