Get Perfect Results with Premium Associate-Cloud-Engineer Dumps Updated 266 Questions [Q79-Q99]

Share

Get Perfect Results with Premium Associate-Cloud-Engineer Dumps Updated 266 Questions

Free Associate-Cloud-Engineer Exam Study Guide for the NEW Dumps Test Engine

NEW QUESTION # 79
You are building a pipeline to process time-series data.
Which Google Cloud Platform services should you put in boxes 1,2,3, and 4?

  • A. Cloud Pub/Sub, Cloud Dataflow, Cloud Datastore, BigQuery
  • B. Cloud Pub/Sub, Cloud Storage, BigQuery, Cloud Bigtable
  • C. Firebase Messages, Cloud Pub/Sub, Cloud Spanner, BigQuery
  • D. Cloud Pub/Sub, Cloud Dataflow, Cloud Bigtable, BigQuery

Answer: D

Explanation:
Correct answer is D as Cloud Pub/Sub for data ingestion, Dataflow for data handling and transformation, Bigtable for storage to provide low latency data access and BigQuery for analytics Whenever we want to process timeseries data look for BigTable.
Also you want to perform analystics in Box 4 ..look for BigQuery


NEW QUESTION # 80
You deployed a new application inside your Google Kubernetes Engine cluster using the YAML file specified below.

You check the status of the deployed pods and notice that one of them is still in PENDING status:

You want to find out why the pod is stuck in pending status. What should you do?

  • A. View logs of the container in myapp-deployment-58ddbbb995-lp86m pod and check for warning messages.
  • B. Review details of the myapp-service Service object and check for error messages.
  • C. Review details of the myapp-deployment Deployment object and check for error messages.
  • D. Review details of myapp-deployment-58ddbbb995-lp86m Pod and check for warning messages.

Answer: D

Explanation:
Explanation
https://kubernetes.io/docs/tasks/debug-application-cluster/debug-application/#debugging-pods


NEW QUESTION # 81
You have created a code snippet that should be triggered whenever a new file is uploaded to a Cloud Storage bucket. You want to deploy this code snippet. What should you do?

  • A. Use Cloud Functions and configure the bucket as a trigger resource.
  • B. Use App Engine and configure Cloud Scheduler to trigger the application using Pub/Sub.
  • C. Use Dataflow as a batch job, and configure the bucket as a data source.
  • D. Use Google Kubernetes Engine and configure a CronJob to trigger the application using Pub/Sub.

Answer: A

Explanation:
Google Cloud Storage Triggers
Cloud Functions can respond to change notifications emerging from Google Cloud Storage.
These notifications can be configured to trigger in response to various events inside a bucket- object creation, deletion, archiving and metadata updates.
Note: Cloud Functions can only be triggered by Cloud Storage buckets in the same Google Cloud Platform project.
Event types
Cloud Storage events used by Cloud Functions are based on Cloud Pub/Sub Notifications for Google Cloud Storage and can be configured in a similar way.
Supported trigger type values are:
google.storage.object.finalize
google.storage.object.delete
google.storage.object.archive
google.storage.object.metadataUpdate
Object Finalize
Trigger type value: google.storage.object.finalize
This event is sent when a new object is created (or an existing object is overwritten, and a new generation of that object is created) in the bucket.
https://cloud.google.com/functions/docs/calling/storage#event_types


NEW QUESTION # 82
You need to manage a third-party application that will run on a Compute Engine instance. Other Compute Engine instances are already running with default configuration. Application installation files are hosted on Cloud Storage. You need to access these files from the new instance without allowing other virtual machines (VMs) to access these files. What should you do?

  • A. Create a new service account and assign this service account to the new instance Add metadata to the objects on Cloud Storage that matches the metadata on the new instance.
  • B. Create the instance with the default Compute Engine service account Add metadata to the objects on Cloud Storage that matches the metadata on the new instance.
  • C. Create a new service account and assign this service account to the new instance Grant the service account permissions on Cloud Storage.
  • D. Create the instance with the default Compute Engine service account Grant the service account permissions on Cloud Storage.

Answer: B

Explanation:
https://cloud.google.com/iam/docs/best-practices-for-using-and-managing-service-accounts If an application uses third-party or custom identities and needs to access a resource, such as a BigQuery dataset or a Cloud Storage bucket, it must perform a transition between principals. Because Google Cloud APIs don't recognize third-party or custom identities, the application can't propagate the end-user's identity to BigQuery or Cloud Storage. Instead, the application has to perform the access by using a different Google identity.


NEW QUESTION # 83
You have a project for your App Engine application that serves a development environment. The required testing has succeeded and you want to create a new project to serve as your production environment. What should you do?

  • A. Use gcloud to create the new project, and then deploy your application to the new project.
  • B. Use gcloud to create the new project and to copy the deployed application to the new project.
  • C. Deploy your application again using gcloud and specify the project parameter with the new project name to create the new project.
  • D. Create a Deployment Manager configuration file that copies the current App Engine deployment into a new project.

Answer: A

Explanation:
You can deploy to a different project by using -project flag.
By default, the service is deployed the current project configured via:
$ gcloud config set core/project PROJECT
To override this value for a single deployment, use the -project flag:
$ gcloud app deploy ~/my_app/app.yaml -project=PROJECT
Ref: https://cloud.google.com/sdk/gcloud/reference/app/deploy


NEW QUESTION # 84
You have a developer laptop with the Cloud SDK installed on Ubuntu. The Cloud SDK was installed from the Google Cloud Ubuntu package repository. You want to test your application locally on your laptop with Cloud Datastore. What should you do?

  • A. Export Cloud Datastore data using gcloud datastore export.
  • B. Create a Cloud Datastore index using gcloud datastore indexes create.
  • C. Install the google-cloud-sdk-datastore-emulator component using the apt get install command.
  • D. Install the cloud-datastore-emulator component using the gcloud components install command.

Answer: D

Explanation:
The Datastore emulator provides local emulation of the production Datastore environment. You can use the emulator to develop and test your application locally Ref: https://cloud.google.com/datastore/docs/tools/datastore-emulator


NEW QUESTION # 85
You have 32 GB of data in a single file that you need to upload to a Nearline Storage bucket. The WAN connection you are using is rated at 1 Gbps, and you are the only one on the connection. You want to use as much of the rated 1 Gbps as possible to transfer the file rapidly. How should you upload the file?

  • A. Change the storage class of the bucket from Nearline to Multi-Regional.
  • B. Decrease the TCP window size on the machine initiating the transfer.
  • C. Enable parallel composite uploads using gsutil on the file transfer.
  • D. Use the GCP Console to transfer the file instead of gsutil.

Answer: C


NEW QUESTION # 86
You need to select and configure compute resources for a set of batch processing jobs. These jobs take around 2 hours to complete and are run nightly. You want to minimize service costs.
What should you do?

  • A. Select Google Kubernetes Engine. Use a single-node cluster with a small instance type.
  • B. Select Compute Engine. Use VM instance types that support micro bursting.
  • C. Select Compute Engine. Use preemptible VM instances of the appropriate standard machine type.
  • D. Select Google Kubernetes Engine. Use a three-node cluster with micro instance types.

Answer: C

Explanation:
Batch processing jobs can run on preemptible instances. If some of those instances terminate during processing, the job slows but does not completely stop.


NEW QUESTION # 87
You are asked to set up application performance monitoring on Google Cloud projects A, B, and C as a single pane of glass. You want to monitor CPU, memory, and disk. What should you do?

  • A. Enable API and then use default dashboards to view all projects in sequence.
  • B. Enable API and then give the metrics.reader role to projects A, B, and C.
  • C. Enable API and then share charts from project A, B, and C.
  • D. Enable API, create a workspace under project A, and then add project B and C.

Answer: D

Explanation:
Explanation
https://cloud.google.com/monitoring/settings/multiple-projects
https://cloud.google.com/monitoring/workspaces


NEW QUESTION # 88
You're working on creating a script that can extract the IP address of a Kubernetes Service. Your coworker sent you a code snippet that they had saved. Which one is the best starting point for your code?

  • A. kubectl get svc -o jsonpath='{.items[*].status.loadBalancer.ingress[0].ip}'
  • B. kubectl get svc -o filtered- json='{.items[*].status.loadBalancer.ingress[0].ip}'
  • C. kubectl get svc -o html
  • D. kubectl get svc

Answer: A


NEW QUESTION # 89
You need to create a new billing account and then link it with an existing Google Cloud Platform project.
What should you do?

  • A. Verify that you are Billing Administrator for the billing account.
    Update the existing project to link it to the existing billing account.
  • B. Verify that you are Billing Administrator for the billing account.
    Create a new project and link the new project to the existing billing account.
  • C. Verify that you are Project Billing Manager for the GCP project.
    Create a new billing account and link the new billing account to the existing project.
  • D. Verify that you are Project Billing Manager for the GCP project.
    Update the existing project to link it to the existing billing account.

Answer: C

Explanation:
Project Billing Manager is required to manage the GCP project billing settings. We assume you can create a new billing account because you are an organization billing admin or because you are not part of an organization.


NEW QUESTION # 90
You have a website hosted on App Engine standard environment. You want 1% of your users to see a new test version of the website. You want to minimize complexity. What should you do?

  • A. Create a new App Engine application in the same project. Deploy the new version in that application. Configure your network load balancer to send 1% of the traffic to that new application.
  • B. Deploy the new version in the same application and use the --splits option to give a weight of 99 to the current version and a weight of 1 to the new version.
  • C. Deploy the new version in the same application and use the --migrate option.
  • D. Create a new App Engine application in the same project. Deploy the new version in that application. Use the App Engine library to proxy 1% of the requests to the new version.

Answer: D


NEW QUESTION # 91
After a recent security incident, your startup company wants better insight into what is happening in the Google Cloud environment. You need to monitor unexpected firewall changes and instance creation. Your company prefers simple solutions. What should you do?

  • A. Install Kibana on a compute Instance. Create a log sink to forward Cloud Audit Logs filtered for firewalls and compute instances to Pub/Sub. Target the Pub/Sub topic to push messages to the Kibana instance. Analyze the logs on Kibana in real time.
  • B. Use Cloud Logging filters to create log-based metrics for firewall and instance actions. Monitor the changes and set up reasonable alerts.
  • C. Turn on Google Cloud firewall rules logging, and set up alerts for any insert, update, or delete events.
  • D. Create a log sink to forward Cloud Audit Logs filtered for firewalls and compute instances to Cloud Storage.Use BigQuery to periodically analyze log events in the storage bucket.

Answer: B

Explanation:
This answer is the simplest and most effective way to monitor unexpected firewall changes and instance creation in Google Cloud. Cloud Logging filters allow you to specify the criteria for the log entries that you want to view or export. You can use the Logging query language to write filters based on the LogEntry fields, such as resource.type, severity, or protoPayload.methodName. For example, you can filter for firewall-related events by using the following query:
resource.type="gce_subnetwork" logName="projects/PROJECT_ID/logs/compute.googleapis.com%2Ffirewall" You can filter for instance-related events by using the following query:
resource.type="gce_instance" logName="projects/PROJECT_ID/logs/compute.googleapis.com%2Factivity_log" You can create log-based metrics from these filters to measure the rate or count of log entries that match the filter. Log-based metrics can be used to create charts and dashboards in Cloud Monitoring, or to set up alerts based on the metric values. For example, you can create an alert policy that triggers when the log-based metric for firewall changes exceeds a certain threshold in a given time interval. This way, you can get notified of any unexpected or malicious changes to your firewall rules.
Option B is incorrect because it is unnecessarily complex and costly. Installing Kibana on a compute instance requires additional configuration and maintenance. Creating a log sink to forward Cloud Audit Logs to Pub/Sub also incurs additional charges for the Pub/Sub service. Analyzing the logs on Kibana in real time may not be feasible or efficient, as it requires constant monitoring and manual intervention.
Option C is incorrect because Google Cloud firewall rules logging is a different feature from Cloud Audit Logs. Firewall rules logging allows you to audit, verify, and analyze the effects of your firewall rules by creating connection records for each rule that applies to traffic. However, firewall rules logging does not log the insert, update, or delete events for the firewall rules themselves. Those events are logged by Cloud Audit Logs, which record the administrative activities in your Google Cloud project.
Option D is incorrect because it is not a real-time solution. Creating a log sink to forward Cloud Audit Logs to Cloud Storage requires additional storage space and charges. Using BigQuery to periodically analyze log events in the storage bucket also incurs additional costs for the BigQuery service. Moreover, this option does not provide any alerting mechanism to notify you of any unexpected or malicious changes to your firewall rules or instances.


NEW QUESTION # 92
You want to send and consume Cloud Pub/Sub messages from your App Engine application. The Cloud Pub/Sub API is currently disabled. You will use a service account to authenticate your application to the API. You want to make sure your application can use Cloud Pub/Sub. What should you do?

  • A. Rely on the automatic enablement of the Cloud Pub/Sub API when the Service Account accesses it.
  • B. Enable the Cloud Pub/Sub API in the API Library on the GCP Console.
  • C. Use Deployment Manager to deploy your application. Rely on the automatic enablement of all APIs used by the application being deployed.
  • D. Grant the App Engine Default service account the role of Cloud Pub/Sub Admin. Have your application enable the API on the first connection to Cloud Pub/Sub.

Answer: B

Explanation:
Quickstart: using the Google Cloud Console
This page shows you how to perform basic tasks in Pub/Sub using the Google Cloud Console.
Note: If you are new to Pub/Sub, we recommend that you start with the interactive tutorial.
Before you begin
Set up a Cloud Console project.
Set up a project
Click to:
Create or select a project.
Enable the Pub/Sub API for that project.
You can view and manage these resources at any time in the Cloud Console.
Install and initialize the Cloud SDK.
Note: You can run the gcloud tool in the Cloud Console without installing the Cloud SDK. To run the gcloud tool in the Cloud Console, use Cloud Shell .
https://cloud.google.com/pubsub/docs/quickstart-console


NEW QUESTION # 93
You deployed a new application inside your Google Kubernetes Engine cluster using the YAML file specified below.

You check the status of the deployed pods and notice that one of them is still in PENDING status:

You want to find out why the pod is stuck in pending status. What should you do?

  • A. View logs of the container in myapp-deployment-58ddbbb995-lp86m pod and check for warning messages.
  • B. Review details of the myapp-service Service object and check for error messages.
  • C. Review details of the myapp-deployment Deployment object and check for error messages.
  • D. Review details of myapp-deployment-58ddbbb995-lp86m Pod and check for warning messages.

Answer: D

Explanation:
https://kubernetes.io/docs/tasks/debug-application-cluster/debug-application/#debugging-pods


NEW QUESTION # 94
You are analyzing Google Cloud Platform service costs from three separate projects. You want to use this information to create service cost estimates by service type, daily and monthly, for the next six months using standard query syntax. What should you do?

  • A. Export your transactions to a local file and perform analysis with a desktop tool.
  • B. Export your bill to a Cloud Storage bucket, and then import into Google Sheets for analysis.
  • C. Export your bill to a Cloud Storage bucket and then import into Cloud Bigtable for analysis.
  • D. Export your bill to a BigQuery dataset, and then write time window-based SQL queries for analysis.

Answer: D


NEW QUESTION # 95
You have a Dockerfile that you need to deploy on Kubernetes Engine. What should you do?

  • A. Create a docker image from the Dockerfile and upload it to Cloud Storage.
    Create a Deployment YAML file to point to that image.
    Use kubectl to create the deployment with that file.
  • B. Use gcloud app deploy <dockerfilename>.
  • C. Create a docker image from the Dockerfile and upload it to Container Registry.
    Create a Deployment YAML file to point to that image.
    Use kubectl to create the deployment with that file.
  • D. Use kubectl app deploy <dockerfilename>.

Answer: C

Explanation:
https://cloud.google.com/kubernetes-engine/docs/tutorials/hello-app


NEW QUESTION # 96
You have downloaded and installed the gcloud command line interface (CLI) and have authenticated with your Google Account. Most of your Compute Engine instances in your project run in the europe-west1-d zone. You want to avoid having to specify this zone with each CLI command when managing these instances. What should you do?

  • A. In the Settings page for Compute Engine under Default location, set the zone to europe-west1-d.
  • B. Set the europe-west1-d zone as the default zone using the gcloud config subcommand.
  • C. Create a Metadata entry on the Compute Engine page with key compute/zone and value europe-west1-d.
  • D. In the CLI installation directory, create a file called default.conf containing zone=europe-west1-d.

Answer: B

Explanation:
Change your default zone and region in the metadata server Note: This only applies to the default configuration. You can change the default zone and region in your metadata server by making a request to the metadata server. For example: gcloud compute project-info add-metadata \ --metadata google-compute-default-region=europe-west1,google-compute-default-zone=europe-west1-b The gcloud command-line tool only picks up on new default zone and region changes after you rerun the gcloud init command. After updating your default metadata, run gcloud init to reinitialize your default configuration. https://cloud.google.com/compute/docs/gcloud-compute#change_your_default_zone_and_region_in_the_metadata_server


NEW QUESTION # 97
You have a website hosted on App Engine standard environment. You want 1% of your users to see a new test version of the website. You want to minimize complexity. What should you do?

  • A. Create a new App Engine application in the same project. Deploy the new version in that application. Configure your network load balancer to send 1% of the traffic to that new application.
  • B. Create a new App Engine application in the same project. Deploy the new version in that application. Use the App Engine library to proxy 1% of the requests to the new version.
  • C. Deploy the new version in the same application and use the --splits option to give a weight of 99 to the current version and a weight of 1 to the new version.
  • D. Deploy the new version in the same application and use the --migrate option.

Answer: C

Explanation:
https://cloud.google.com/appengine/docs/standard/python/splitting-traffic#gcloud


NEW QUESTION # 98
Every employee of your company has a Google account. Your operational team needs to manage a large number of instances on Compute Engine. Each member of this team needs only administrative access to the servers. Your security team wants to ensure that the deployment of credentials is operationally efficient and must be able to determine who accessed a given instance. What should you do?

  • A. Generate a new SSH key pair. Give the private key to each member of your team. Configure the public key as a project-wide public SSH key in your Cloud Platform project and allow project-wide public SSH keys on each instance.
  • B. Ask each member of the team to generate a new SSH key pair and to send you their public key. Use a configuration management tool to deploy those keys on each instance.
  • C. Ask each member of the team to generate a new SSH key pair and to add the public key to their Google account. Grant the "compute.osAdminLogin" role to the Google group corresponding to this team.
  • D. Generate a new SSH key pair. Give the private key to each member of your team. Configure the public key in the metadata of each instance.

Answer: C

Explanation:
Explanation
https://cloud.google.com/compute/docs/instances/managing-instance-access


NEW QUESTION # 99
......

Associate-Cloud-Engineer PDF Dumps Extremely Quick Way Of Preparation: https://www.dumpstorrent.com/Associate-Cloud-Engineer-exam-dumps-torrent.html

Download Associate-Cloud-Engineer Dumps (2024) - Free PDF Exam Demo: https://drive.google.com/open?id=1z9cnD80hGn_2TcLkTN-gDs7X9DE6lAwn