Examtopics

Professional Cloud Security Engineer
  • Topic 1 Question 224

    You have numerous private virtual machines on Google Cloud. You occasionally need to manage the servers through Secure Socket Shell (SSH) from a remote location. You want to configure remote access to the servers in a manner that optimizes security and cost efficiency.

    What should you do?

    • Create a site-to-site VPN from your corporate network to Google Cloud.

    • Configure server instances with public IP addresses. Create a firewall rule to only allow traffic from your corporate IPs.

    • Create a firewall rule to allow access from the Identity-Aware Proxy (IAP) IP range. Grant the role of an IAP-secured Tunnel User to the administrators.

    • Create a jump host instance with public IP. Manage the instances by connecting through the jump host.


    シャッフルモード