New Study Deck 2 Flashcards

1
Q

What is a network endpoint group (NEG)?

A

Network endpoint groups (NEGs) are zonal resources that represent collections of IP address and port combinations for GCP resources within a single subnet. Each IP address and port combination is called a network endpoint.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a Secondary subnet range?

A

Secondary range you can apply to a subnet for use with alias IP ranges

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Why would you use tags over service accounts for firewall rules?

A

Don’t need to restart VM to change, can have multiple tags on a VM

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Why would you use service accounts over network tags for firewall rules?

A

Anyone can set any tag! Service accounts are resources with permissions.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the IP address ranges you need to assign when you build a GKE cluster?

A

“Node subnet
Services secondary range
Pods secondary range
Master IP range (for private clusters)”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is an Ingress controller?

A

It is a GKE service that creates and manages an HTTP(s) load balancer on GCP. The backend can be a NEG.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly