nerdexam
Google

PROFESSIONAL-CLOUD-NETWORK-ENGINEER · Question #161

You suspect that one of the virtual machines (VMs) in your default Virtual Private Cloud (VPC) is under a denial-of-service attack. You need to analyze the incoming traffic for the VM to understand…

The correct answer is B. Enable VPC Flow Logs for the subnet. Analyze the logs and get the source IP addresses from the. Record network flows sent from and received by VM instances, the best approach would be to use VPC Flow Logs feature. If enabled for a subnet, VPC flow logs collect data from all VM instances in that subnet.

Submitted by sofia.br· Apr 18, 2026Implementing network security

Question

You suspect that one of the virtual machines (VMs) in your default Virtual Private Cloud (VPC) is under a denial-of-service attack. You need to analyze the incoming traffic for the VM to understand where the traffic is coming from. What should you do?

Options

  • AEnable Data Access audit logs of the VPC. Analyze the logs and get the source IP addresses
  • BEnable VPC Flow Logs for the subnet. Analyze the logs and get the source IP addresses from the
  • CEnable VPC Flow Logs for the VPC. Analyze the logs and get the source IP addresses from the
  • DEnable Data Access audit logs of the subnet. Analyze the logs and get the source IP addresses

How the community answered

(26 responses)
  • A
    8% (2)
  • B
    73% (19)
  • C
    15% (4)
  • D
    4% (1)

Explanation

Record network flows sent from and received by VM instances, the best approach would be to use VPC Flow Logs feature. If enabled for a subnet, VPC flow logs collect data from all VM instances in that subnet.

Topics

#VPC Flow Logs#Network Monitoring#Traffic Analysis#Network Troubleshooting

Community Discussion

No community discussion yet for this question.

Full PROFESSIONAL-CLOUD-NETWORK-ENGINEER Practice