PROFESSIONAL-CLOUD-ARCHITECT · Question #207
PROFESSIONAL-CLOUD-ARCHITECT Question #207: Real Exam Question with Answer & Explanation
The correct answer is B: Enable Firewall Rules Logging for the firewall rules you want to monitor.. When you create a firewall rule there is an option for firewall rule logging on/off. It is set to off by To get firewall insights or view the logs for a specific firewall rule you need to enable logging while creating the rule or you can enable it by editing that rule. https://cl
Question
Your company uses the Firewall Insights feature in the Google Network Intelligence Center. You have several firewall rules applied to Compute Engine instances. You need to evaluate the efficiency of the applied firewall ruleset. When you bring up the Firewall Insights page in the Google Cloud Console, you notice that there are no log rows to display. What should you do to troubleshoot the issue?
Options
- AEnable Virtual Private Cloud (VPC) flow logging.
- BEnable Firewall Rules Logging for the firewall rules you want to monitor.
- CVerify that your user account is assigned the compute.networkAdmin Identity and Access
- DInstall the Google Cloud SDK, and verify that there are no Firewall logs in the command line
Explanation
When you create a firewall rule there is an option for firewall rule logging on/off. It is set to off by To get firewall insights or view the logs for a specific firewall rule you need to enable logging while creating the rule or you can enable it by editing that rule. https://cloud.google.com/network-intelligence-center/docs/firewall-insights/how-to/using-firewall- insights#enabling-fw-rules-logging
Community Discussion
No community discussion yet for this question.