nerdexam
Google

PROFESSIONAL-CLOUD-ARCHITECT · Question #113

You are working in a highly secured environment where public Internet access from the Compute Engine VMs is not allowed. You do not yet have a VPN connection to access an on-premises file server…

The correct answer is A. Upload the required installation files to Cloud Storage. Configure the VM on a subnet with a. https://cloud.google.com/vpc/docs/configure-private-services-access Note: Even though the IP addresses for Google APIs and services are public, the traffic path from instances that are using Private Google Access to the Google APIs remains within Google's

Submitted by suresh_in· Mar 30, 2026Managing and provisioning cloud solution infrastructure

Question

You are working in a highly secured environment where public Internet access from the Compute Engine VMs is not allowed. You do not yet have a VPN connection to access an on-premises file server. You need to install specific software on a Compute Engine instance. How should you install the software?

Options

  • AUpload the required installation files to Cloud Storage. Configure the VM on a subnet with a
  • BUpload the required installation files to Cloud Storage and use firewall rules to block all traffic
  • CUpload the required installation files to Cloud Source Repositories. Configure the VM on a subnet
  • DUpload the required installation files to Cloud Source Repositories and use firewall rules to block

How the community answered

(38 responses)
  • A
    76% (29)
  • B
    13% (5)
  • C
    8% (3)
  • D
    3% (1)

Explanation

https://cloud.google.com/vpc/docs/configure-private-services-access Note: Even though the IP addresses for Google APIs and services are public, the traffic path from instances that are using Private Google Access to the Google APIs remains within Google's

Topics

#Private Google Access#Cloud Storage#air-gapped environment#VPC subnet

Community Discussion

No community discussion yet for this question.

Full PROFESSIONAL-CLOUD-ARCHITECT Practice