Topic 1 Question 220
You are creating a design that will connect your single on-premises data center to a VPC in Google Cloud by using an IPsec VPN connection. The connection must have a minimum SLA of 99.99%. There is a single VPN termination device located in your on-premises data center. The VPN termination device can be configured only with a single public IP address. Your design must also have the least amount of setup effort. What should you do?
- Create two HA VPN gateways.
- Create one tunnel on interface 0 of one gateway and create one tunnel on interface 1 of the other gateway.
- Terminate each of the two tunnels on the single public IP address that is configured on the VPN termination device located in your on-premises data center.
- Create one Classic VPN gateway and one HA VPN gateway.
- Create one tunnel on the interface of the Classic VPN gateway and one tunnel on interface 1 of the HA VPN gateway.
- Terminate each of the two tunnels on the single public IP address that is configured on the VPN termination device located in your on-premises data center.
- Replace the existing on-premises VPN termination device with a new device that is configured with two different public IP addresses.
- Create one HA VPN gateway.
- Create one tunnel for each of the two HA VPN gateway interfaces.
- Terminate each of the two tunnels on one of the two public IP addresses that is configured on the new VPN termination device located in your on-premises data center.
- Create one HA VPN gateway.
- Create one tunnel for each of the two HA VPN gateway interfaces.
- Terminate each of the two tunnels on the single public IP address that is configured on the VPN termination device located in your on-premises data center.
ユーザの投票
コメント(1)
- 正解だと思う選択肢: D
https://cloud.google.com/network-connectivity/docs/vpn/concepts/topologies#:~:text=To%20meet%20the%2099.9%25%20availability,of%20the%20Compute%20Engine%20VM. Caution: To receive the 99.99% availability SLA, configure at least one tunnel on each HA VPN gateway interface. Configuring only one tunnel from a single HA VPN interface to a single interface on the peer gateway doesn't provide enough redundancy to meet the availability SLA because there is an unused interface on the HA VPN gateway, which does not have a tunnel configured on it.
👍 1RKS_20212025/02/24
シャッフルモード