Google
PROFESSIONAL-CLOUD-NETWORK-ENGINEER · Question #161
You suspect that one of the virtual machines (VMs) in your default Virtual Private Cloud (VPC) is under a denial-of-service attack. You need to analyze the incoming traffic for the VM to understand…
The correct answer is B. Enable VPC Flow Logs for the subnet. Analyze the logs and get the source IP addresses from the. Record network flows sent from and received by VM instances, the best approach would be to use VPC Flow Logs feature. If enabled for a subnet, VPC flow logs collect data from all VM instances in that subnet.
Submitted by sofia.br· Apr 18, 2026Implementing network security
Question
You suspect that one of the virtual machines (VMs) in your default Virtual Private Cloud (VPC) is under a denial-of-service attack. You need to analyze the incoming traffic for the VM to understand where the traffic is coming from. What should you do?
Options
- AEnable Data Access audit logs of the VPC. Analyze the logs and get the source IP addresses
- BEnable VPC Flow Logs for the subnet. Analyze the logs and get the source IP addresses from the
- CEnable VPC Flow Logs for the VPC. Analyze the logs and get the source IP addresses from the
- DEnable Data Access audit logs of the subnet. Analyze the logs and get the source IP addresses
How the community answered
(26 responses)- A8% (2)
- B73% (19)
- C15% (4)
- D4% (1)
Explanation
Record network flows sent from and received by VM instances, the best approach would be to use VPC Flow Logs feature. If enabled for a subnet, VPC flow logs collect data from all VM instances in that subnet.
Topics
#VPC Flow Logs#Network Monitoring#Traffic Analysis#Network Troubleshooting
Community Discussion
No community discussion yet for this question.