Professional Cloud Security EngineerConfiguring network securityEasy

A company is deploying a new application to Google Cloud that requires secure, encrypted communication between its instances and on-premises systems over the public internet. They need to ensure that the connection is highly available and resilient to single points of failure. Which Google Cloud networking service should they use?

  1. ACloud VPN
  2. BCloud Interconnect
  3. CCloud CDN
  4. DVPC Service Controls
Show answer & explanation

Correct answer: A. Cloud VPN

Cloud VPN provides secure, encrypted connections over the public internet between Google Cloud VPC networks and on-premises networks. It is designed for high availability through redundant tunnels.

Why the other options are wrong

  • B. Cloud Interconnect provides a dedicated physical connection, which is not over the public internet.
  • C. Cloud CDN improves content delivery performance but does not establish secure network connections to on-premises systems.
  • D. VPC Service Controls protects against data exfiltration but does not provide network connectivity to on-premises systems.

Cloud VPN

Cloud VPN allows you to securely connect your on-premises network to your Google Cloud Virtual Private Cloud (VPC) network through an IPsec VPN connection.

  • Uses IPsec VPN for encryption and security.
  • Connects over the public internet.
  • Supports high availability with redundant tunnels.

Memory trick: VPN is like a private tunnel for your data through the public internet.

More Configuring network security questions