Coursera Flashcards
Using the diagram below, can you identify the “parent” of project_3?
A. Example.com
B. Folder A
C. Folder B
D. Project_1
C. Folder B
Using the same diagram on Question 1, can you figure out which object is the parent of project_5? A. Example.com B. Folder A C. Folder B D. Project_1
A. Example.com
Again, using the diagram on Question 1, Bob has edit permissions on Folder B - is he also able to edit project_4?
A. Yes
B. No
A. Yes
You must have a Billing Account in order to consume GCP services.
A. True
B. False
A. True
In order to change the Billing account on a Project, you must have the following permissions/roles: (Pick two) A. Project Owner B. Folder Editor C. Project Editor D. Service Account Administrator E. Billing Administrator
A. Project Owner
E. Billing Administrator
Is the following statement True or False?
The Pricing Calculator gives you a total exact cost for whatever services and products you choose for your project.
A. True
B. False
B. False
Which of the choices below is a “flexible zero-ops platform for building applications?”
A. Google Compute Engine
B. Google App Engine
C. Google Kubernetes Engine
B. Google App Engine
Which of the choices below is “an open source container orchestration system?”
A. Google Compute Engine
B. Google App Engine
C. Google Kubernetes Engine
C. Google Kubernetes Engine
In Google Cloud, a Kubernetes node is a virtual machine running in Compute Engine.
A. True
B. False
A. True
Which TWO of the following data storage solutions would you consider if you wanted a NOSQL option? A. Cloud Datastore B. Cloud Bigtable C. Cloud Storage D. Cloud SQL E. Cloud Spanner F. Cloud BigQuery
A. Cloud Datastore
B. Cloud Bigtable
Which TWO of the following data storage solutions would you consider if you wanted relational SQL data storage? A. Cloud Datastore B. Cloud Bigtable C. Cloud Storage D. Cloud SQL E. Cloud Spanner F. Cloud BigQuery
D. Cloud SQL
E. Cloud Spanner
Which of the following concerning VPC subnets is TRUE?
A. All primary & secondary IP ranges used must be both unique and contiguous.
B. Primary IP ranges cannot be expanded, only replaced or shrunk.
C. If no instances are actively using that IP range it can be replaced.
D. VPC subnets can be altered on the fly while in use.
C. If no instances are actively using that IP range it can be replaced.
Public VM Images always incur licensing fees for their use.
A. True
B. False
B. False
Stackdriver stores logs…
A. Indefinitely, unless you set it up otherwise.
B. For up to 60 days.
C. never - logs are ephemeral and only written to BigQuery.
D. For 30 days for most log types.
D. For 30 days for most log types.
Using Cloud Identity for group management does NOT entitle you to GSuite products and services.
A. True
B. False
A. True
What is the purpose of Virtual Private Networking (VPN)?
A. It is a method to detect intruders at the edge of a network boundary.
B. VPNs are also called access control lists, or ACLs, and they limit network access.
C. To enable a secure communication method (a tunnel) to connect two trusted environments through an untrusted environment, such as the Internet.
D. The main purpose is to encrypt data so that it can be stored in an encrypted format.
C. To enable a secure communication method (a tunnel) to connect two trusted environments through an untrusted environment, such as the Internet.
Which GCP Interconnect service requires a connection in a GCP colocation facility and provides 10 Gbps per link? A. Cloud VPN B. Direct Peering C. Dedicated Interconnect D. Partner Interconnect E. Carrier Peering
C. Dedicated Interconnect
If you cannot meet Google’s peering requirements, which network connection service should you choose to connect to G Suite and YouTube? A. Partner Interconnect B. Carrier Peering C. Dedicated Interconnect D. Direct Peering
B. Carrier Peering
Which of the following approaches to multi-project networking, uses a centralized network administration model?
A. Cloud VPN
B. Shared VPC
C. VPC Network Peering
B. Shared VPC
Which of the following is not a GCP load balancing service? A. Internal load balancing B. HTTP(S) load balancing C. Hardware-defined load balancing D. Network load balancing E. TCP proxy load balancing F. SSL proxy load balancing
C. Hardware-defined load balancing
Which three GCP load balancing services support IPv6 clients? A. Network load balancing B. HTTP(S) load balancing C. Internal load balancing D. TCP proxy load balancing E. SSL proxy load balancing
B. HTTP(S) load balancing
D. TCP proxy load balancing
E. SSL proxy load balancing
Which of the following are applicable autoscaling policies for managed instance groups? A. CPU utilization B. Queue-based workload C. Load balancing capacity D. Monitoring metrics
A. CPU utilization
B. Queue-based workload
C. Load balancing capacity
D. Monitoring metrics
What’s the benefit of writing templates for your Deployment Manager configuration?
A. Ensure that one resource is created before another; otherwise, resources will be created in parallel
B. Allows you to abstract part of your configuration into individual building blocks that you can reuse
C. Allows you to hardcode properties for your resources
B. Allows you to abstract part of your configuration into individual building blocks that you can reuse
What does Google Cloud Platform Marketplace offer?
A. A centralized billing platform for all GCP services and applications
B. A platform for trading VM instances
C. Production-grade solutions from third-party vendors who have already created their own deployment configurations based on Deployment Manager
C. Production-grade solutions from third-party vendors who have already created their own deployment configurations based on Deployment Manager
How are Managed Services useful?
A. If you have an existing infrastructure service, Google will manage it for you if you purchase a Managed Services contract.
B. Managed Services are pay services offered by 3rd party vendors.
C. Managed Services may be an alternative to creating and managing infrastructure solutions.
D. Managed Services are more customizable than infrastructure solutions.
C. Managed Services may be an alternative to creating and managing infrastructure solutions.
Which of the following is a feature of Cloud Dataproc?
A. It doesn’t integrate with Stackdriver, but it has its own monitoring system.
B. It typically takes less than 90 seconds to start a cluster.
C. Dataproc billing occurs in 10-hour intervals.
D. Dataproc allows full control over HDFS advanced settings.
B. It typically takes less than 90 seconds to start a cluster.
Which of the following does not allow you to interact with GCP? A. GCP Console B. REST-based API C. Cloud Explorer D. Cloud Shell
C. Cloud Explorer
What is the difference between GCP Console and Cloud Shell?
A. Cloud Shell is a command-line tool, while GCP Console is a graphical user interface
B. GCP Console is a command-line tool, while Cloud Shell is a graphical user interface
C. There is no difference as these tools are 100% identical.
D. Cloud Shell is a locally installed tool, while GCP Console is a temporary virtual machine.
A. Cloud Shell is a command-line tool, while GCP Console is a graphical user interface
In GCP, what is the minimum number of IP addresses that a VM instance needs?
A. One: Only an internal IP address
B. Two: One internal and one external IP address
C. Three: One internal, one external and one alias IP address
A. One: Only an internal IP address
What are the three types of networks offered in the Google Cloud Platform?
A. Zonal, regional, and global
B. Gigabit network, 10 gigabit network, and 100 gigabit network
C. Default network, auto network, and custom network.
D. IPv4 unicast network, IPv4 multicast network, IPv6 network
C. Default network, auto network, and custom network.
What is one benefit of applying firewall rules by tag rather than by address?
A. Tags help organizations track firewall billing.
B. Tags in network traffic help with network sniffing.
C. Tags on firewall rules control which ephemeral IP addresses VMs will receive.
D. When a VM is created with a matching tag, the firewall rules apply irrespective of the IP address it is assigned.
D. When a VM is created with a matching tag, the firewall rules apply irrespective of the IP address it is assigned.
Which statement is true of Virtual Machine Instances in Google Compute Engine?
A. All Compute Engine VMs are single tenancy and do not share CPU hardware.
B. In Compute Engine, a VM is a networked service that simulates the features of a computer.
C. Compute Engine uses VMware to create Virtual Machine Instances.
D. A VM in Compute Engine always maps to a single hardware computer in a rack.
B. In Compute Engine, a VM is a networked service that simulates the features of a computer.
What are sustained use discounts?
A. Discounts you receive by using preemptible VM instances
B. Purchase commitments for specific resources you know you will use
C. Per-second billing that starts after a 1 minute minimum
D. Automatic discounts that you get for running specific Compute Engine resources for a significant portion of the billing month
D. Automatic discounts that you get for running specific Compute Engine resources for a significant portion of the billing month
Which statement is true of persistent disks?
A. Persistent disks are always HDDs (magnetic spinning disks).
B. Once created, a persistent disk cannot be resized.
C. Persistent disks are encrypted by default.
D. Persistent disks are physical hardware devices connected directly to VMs.
C. Persistent disks are encrypted by default.
Does a cloud computing service let you scale your resource use up and down?
A. Yes
B. No
A. Yes
To get resources from a cloud computing provider, is working with a person at the provider required?
A. Yes
B. No
B. No
Why might a GCP customer use resources in several zones within a region?
A. For improved fault tolerance
B. For better performance
A. For improved fault tolerance
Why might a GCP customer use resources in several regions around the world?
A. To bring their applications closer to users around the world, and for improved fault tolerance
B. To improve security
A. To bring their applications closer to users around the world, and for improved fault tolerance
Choose fundamental characteristics of cloud computing. Mark all that are correct (4 correct responses).
A. Customers are required to commit to multi-year contracts
B. Providers always dedicate physical resources to each customer
C. Resources are available from anywhere over the network
D. Customers can scale their resource use up and down
E. Computing resources available on-demand and self-service
F. Customers pay only for what they use or reserve
G. All resources are open-source-based
A. Customers are required to commit to multi-year contracts
C. Resources are available from anywhere over the network
F. Customers pay only for what they use or reserve
Choose a fundamental characteristic of devices in a virtualized data center.
A. They use less resources than devices in a physical data center.
B. They are more secure.
C. They are available from anywhere on the Internet.
D. They are manageable separately from the underlying hardware.
D. They are manageable separately from the underlying hardware.
What type of cloud computing service lets you bind your application code to libraries that give access to the infrastructure your application needs?
A. Platform as a Service B. Infrastructure as a Service C. Software as a Service D. Hybrid cloud E. Virtualized data centers
A. Platform as a Service
What type of cloud computing service provides raw compute, storage, and network, organized in ways that are familiar from physical data centers?
a. Infrastructure as a Service
b. Software as a Service
c. Database as a Service
d. Platform as a Service
a. Infrastructure as a Service
Which statement is true about the zones within a region?
A. Customers must choose exactly one zone in each region in which to run their resources.
B. Each zone corresponds to a single physical data center.
C. The zones within a region have fast network connectivity among them.
D. The zones within a region are never closer to each other than 160 km.
C. The zones within a region have fast network connectivity among them.
What kind of customer benefits most from billing by the second for cloud resources such as virtual machines?
A. Customers who create and run many virtual machines
B. Customers who create many virtual machines and leave them running for months
C. Customers who create too few virtual machines to get discounts
D. Customers who create virtual machines running commercially licensed operating systems
A. Customers who create and run many virtual machines
Choose the correct completion: Services and APIs are enabled on a per-\_\_\_\_\_\_\_\_\_\_ basis. A. Billing account B. Folder C. Project D. Organization
C. Project
True or false: Google manages every aspect of Google Cloud Platform customers’ security.
True
False
False
Your company has two GCP projects, and you want them to share policies. What is the less error-prone way to set this up?
A. Duplicate all the policies on one project onto the other.
B. Place both projects into a folder, and define the policies on the folder.
B. Place both projects into a folder, and define the policies on the folder.
When would you choose to have an organization node? (Choose all that are correct. Choose 2 responses.)
A. When you want to create folders.
B. When you want to organize resources into projects.
C. When you want to apply organization-wide policies centrally.
D. There is no choice; organization nodes are mandatory.
A. When you want to create folders.
C. When you want to apply organization-wide policies centrally.
Order these IAM role types from broadest to finest-grained.
A. Primitive roles, predefined roles, custom roles
B. Custom roles, predefined roles, primitive roles
C. Predefined roles, custom roles, primitive roles
A. Primitive roles, predefined roles, custom roles
Can IAM policies that are implemented higher in the resource hierarchy take away access that is granted by lower-level policies? Yes / No
No
True or False: In Google Cloud IAM: if a policy applied at the project level gives you Owner permissions, your access to an individual resource in that project might be restricted to View permission if someone applies a more restrictive policy directly to that resource
False
True or False: All Google Cloud Platform resources are associated with a project.
True
False
True
Service accounts are used to provide which of the following? (Choose all that are correct. Choose 3 responses.)
A. A set of predefined permissions
B. A way to restrict the actions a resource (such as a VM) can perform
C. Authentication between Google Cloud Platform services
D. A way to allow users to act with service account permissions
B. A way to restrict the actions a resource (such as a VM) can perform
C. Authentication between Google Cloud Platform services
D. A way to allow users to act with service account permissions