nerdexam
GoogleGoogle

PROFESSIONAL-CLOUD-NETWORK-ENGINEER · Question #6

PROFESSIONAL-CLOUD-NETWORK-ENGINEER Question #6: Real Exam Question with Answer & Explanation

Sign in or unlock PROFESSIONAL-CLOUD-NETWORK-ENGINEER to reveal the answer and full explanation for question #6. The question stem and answer options stay visible for context.

Submitted by wei.xz· Apr 18, 2026Implementing network security

Question

You have an application hosted on a Compute Engine virtual machine instance that cannot communicate with a resource outside of its subnet. When you review the flow and firewall logs, you do not see any denied traffic listed. During troubleshooting you find: - Flow logs are enabled for the VPC subnet, and all firewall rules are set to log. - The subnetwork logs are not excluded from Stackdriver. - The instance that is hosting the application can communicate outside the subnet. - Other instances within the subnet can communicate outside the subnet. - The external resource initiates communication. What is the most likely cause of the missing log lines?

Options

  • AThe traffic is matching the expected ingress rule.
  • BThe traffic is matching the expected egress rule.
  • CThe traffic is not matching the expected ingress rule.
  • DThe traffic is not matching the expected egress rule.

Unlock PROFESSIONAL-CLOUD-NETWORK-ENGINEER to see the answer

You've previewed enough free PROFESSIONAL-CLOUD-NETWORK-ENGINEER questions. Unlock PROFESSIONAL-CLOUD-NETWORK-ENGINEER for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#VPC Firewall Rules#Firewall Logging#Network Troubleshooting#Implicit Deny
Full PROFESSIONAL-CLOUD-NETWORK-ENGINEER PracticeBrowse All PROFESSIONAL-CLOUD-NETWORK-ENGINEER Questions