Google Cloud Professional Cloud Network Engineer — Question 87

Your organization's security policy requires that all internet-bound traffic return to your on-premises data center through HA VPN tunnels before egressing to the internet, while allowing virtual machines (VMs) to leverage private Google APIs using private virtual IP addresses 199.36.153.4/30. You need to configure the routes to enable these traffic flows. What should you do?

Answer options

Correct answer: C

Explanation

The correct answer is C because it allows the traffic to flow correctly by using a custom route for the private IP range with a higher priority. The other options either incorrectly prioritize the routes or direct traffic to the wrong next hop, which would violate the organizational security policy.