PROFESSIONAL-CLOUD-NETWORK-ENGINEER · Question #260
Your organization wants to deploy HA VPN over Cloud Interconnect to ensure encryption-in- transit over the Cloud Interconnect connections. You have created a Cloud Router and two VLAN attachments. The
The correct answer is B. Create an HA VPN gateway and associate the gateway with your two VLAN attachments. Create. HA VPN over Cloud Interconnect requires two separate Cloud Router instances – one dedicated to the Interconnect VLAN attachments and a second one for the HA VPN tier. To finish your deployment, you must: 1. Create an HA VPN gateway and associate its two interfaces with your encry
Question
Options
- ACreate an HA VPN gateway and associate the gateway with your two VLAN attachments. Use the
- BCreate an HA VPN gateway and associate the gateway with your two VLAN attachments. Create
- CEnable MACsec on the VLAN attachments.
- DEnable MACsec on Partner Cloud Interconnect.
How the community answered
(24 responses)- A4% (1)
- B79% (19)
- C13% (3)
- D4% (1)
Explanation
HA VPN over Cloud Interconnect requires two separate Cloud Router instances – one dedicated to the Interconnect VLAN attachments and a second one for the HA VPN tier. To finish your deployment, you must: 1. Create an HA VPN gateway and associate its two interfaces with your encrypted VLAN 2. Provision a new Cloud Router for the HA VPN tier (you cannot reuse the Interconnect-tier router). 3. Configure the peer VPN gateway resources and HA VPN tunnels against that new router. This separation ensures the Interconnect BGP session remains distinct from your HA VPN BGP session, as documented by Google’s HA VPN over Cloud Interconnect architecture.
Topics
Community Discussion
No community discussion yet for this question.