[UPDATED Feb-2024] Best Value Available Preparation Guide for Associate-Cloud-Engineer Exam
1 Full Associate-Cloud-Engineer Practice Test and 266 Unique Questions, Get it Now!
Google Associate-Cloud-Engineer (Google Associate Cloud Engineer) Certification Exam is a widely recognized industry certification that validates the skills and expertise of an individual in implementing and managing Google Cloud Platform (GCP) solutions. Associate-Cloud-Engineer exam is designed to assess the candidate's knowledge in various areas of cloud computing, such as deploying applications, monitoring operations, and managing GCP resources. Google Associate Cloud Engineer Exam certification is ideal for cloud professionals who are looking to enhance their career prospects in the field of cloud computing.
The Google Associate-Cloud-Engineer exam assesses candidates on their ability to perform various cloud engineering tasks, including deploying applications, configuring cloud infrastructure, managing GCP resources, and monitoring and troubleshooting applications. Google Associate Cloud Engineer Exam certification exam also tests the candidate's knowledge of different GCP services, such as Google Compute Engine, Google App Engine, Google Kubernetes Engine, and Google Cloud Storage. The Google Associate Cloud Engineer Certification Exam is an excellent starting point for individuals who want to build a career in cloud computing or are interested in expanding their knowledge of GCP services.
NEW QUESTION # 13
You've deployed a microservice called myapp1 to a Google Kubernetes Engine cluster using the YAML file specified below:
You need to refactor this configuration so that the database password is not stored in plain text.
You want to follow Google-recommended practices. What should you do?
- A. Store the database password inside a ConfigMap object.
Modify the YAML file to populate the DB_PASSWORD environment variable from the ConfigMap. - B. Store the database password inside a Secret object.
Modify the YAML file to populate the DB_PASSWORD environment variable from the Secret. - C. Store the database password inside the Docker image of the container, not in the YAML file.
- D. Store the database password in a file inside a Kubernetes persistent volume, and use a persistent volume claim to mount the volume to the container.
Answer: A
NEW QUESTION # 14
You want to configure a solution for archiving data in a Cloud Storage bucket. The solution must be cost-effective. Data with multiple versions should be archived after 30 days. Previous versions are accessed once a month for reporting. This archive data is also occasionally updated at month-end. What should you do?
- A. Add a bucket lifecycle rule that archives data from regional storage after 30 days to Nearline Storage.
- B. Add a bucket lifecycle rule that archives data with newer versions after 30 days to Nearline Storage.
- C. Add a bucket lifecycle rule that archives data with newer versions after 30 days to Coldline Storage.
- D. Add a bucket lifecycle rule that archives data from regional storage after 30 days to Coldline Storage.
Answer: B
Explanation:
Reference:
https://cloud.google.com/storage/docs/managing-lifecycles
NEW QUESTION # 15
You have 32 GB of data in a single file that you need to upload to a Nearline Storage bucket. The WAN connection you are using is rated at 1 Gbps, and you are the only one on the connection. You want to use as much of the rated 1 Gbps as possible to transfer the file rapidly. How should you upload the file?
- A. Change the storage class of the bucket from Nearline to Multi-Regional.
- B. Use the GCP Console to transfer the file instead of gsutil.
- C. Decrease the TCP window size on the machine initiating the transfer.
- D. Enable parallel composite uploads using gsutil on the file transfer.
Answer: D
Explanation:
https://cloud.google.com/storage/docs/parallel-composite-uploads
https://cloud.google.com/storage/docs/uploads-downloads#parallel-composite-uploads
NEW QUESTION # 16
Your organization uses G Suite for communication and collaboration. All users in your organization have a G Suite account. You want to grant some G Suite users access to your Cloud Platform project. What should you do?
- A. Grant them the required IAM roles using their G Suite email address.
- B. Enable Cloud Identity in the GCP Console for your domain.
- C. In the G Suite console, add the users to a special group called cloud-console- [email protected]. Rely on the default behavior of the Cloud Platform to grant users access if they are members of this group.
- D. Create a CSV sheet with all users' email addresses. Use the gcloud command line tool to convert them into Google Cloud Platform accounts.
Answer: A
Explanation:
https://cloud.google.com/resource-manager/docs/creating-managing-organization
NEW QUESTION # 17
You want to send and consume Cloud Pub/Sub messages from your App Engine application. The Cloud Pub/Sub API is currently disabled. You will use a service account to authenticate your application to the API. You want to make sure your application can use Cloud Pub/Sub. What should you do?
- A. Rely on the automatic enablement of the Cloud Pub/Sub API when the Service Account accesses it.
- B. Use Deployment Manager to deploy your application.
Rely on the automatic enablement of all APIs used by the application being deployed. - C. Grant the App Engine Default service account the role of Cloud Pub/Sub Admin.
Have your application enable the API on the first connection to Cloud Pub/Sub. - D. Enable the Cloud Pub/Sub API in the API Library on the GCP Console.
Answer: D
NEW QUESTION # 18
You have 32 GB of data in a single file that you need to upload to a Nearline Storage bucket. The WAN connection you are using is rated at 1 Gbps, and you are the only one on the connection. You want to use as much of the rated 1 Gbps as possible to transfer the file rapidly. How should you upload the file?
- A. Change the storage class of the bucket from Nearline to Multi-Regional.
- B. Use the GCP Console to transfer the file instead of gsutil.
- C. Decrease the TCP window size on the machine initiating the transfer.
- D. Enable parallel composite uploads using gsutil on the file transfer.
Answer: D
NEW QUESTION # 19
Your company has embraced a hybrid cloud strategy where some of the applications are deployed on Google Cloud. A Virtual Private Network (VPN) tunnel connects your Virtual Private Cloud (VPC) in Google Cloud with your company's on-premises network. Multiple applications in Google Cloud need to connect to an on-premises database server, and you want to avoid having to change the IP configuration in all of your applications when the IP of the database changes.
What should you do?
- A. Configure the IP of the database as custom metadata for each instance, and query the metadata server.
- B. Query the Compute Engine internal DNS from the applications to retrieve the IP of the database.
- C. Configure Cloud NAT for all subnets of your VPC to be used when egressing from the VM instances.
- D. Create a private zone on Cloud DNS, and configure the applications with the DNS name.
Answer: D
Explanation:
Forwarding zones Cloud DNS forwarding zones let you configure target name servers for specific private zones. Using a forwarding zone is one way to implement outbound DNS forwarding from your VPC network. A Cloud DNS forwarding zone is a special type of Cloud DNS private zone. Instead of creating records within the zone, you specify a set of forwarding targets. Each forwarding target is an IP address of a DNS server, located in your VPC network, or in an on-premises network connected to your VPC network by Cloud VPN or Cloud Interconnect.
https://cloud.google.com/nat/docs/overview
DNS configuration Your on-premises network must have DNS zones and records configured so that Google domain names resolve to the set of IP addresses for either private.googleapis.com or restricted.googleapis.com. You can create Cloud DNS managed private zones and use a Cloud DNS inbound server policy, or you can configure on-premises name servers. For example, you can use BIND or Microsoft Active Directory DNS. https://cloud.google.com/vpc/docs/configure-private-google-access-hybrid#config-domain
NEW QUESTION # 20
You are building a new version of an application hosted in an App Engine environment. You want to test the new version with 1% of users before you completely switch your application over to the new version. What should you do?
- A. Deploy a new version of your application in Google Kubernetes Engine instead of App Engine and then use GCP Console to split traffic.
- B. Deploy a new version as a separate app in App Engine. Then configure App Engine using GCP Console to split traffic between the two apps.
- C. Deploy a new version of your application in App Engine. Then go to App Engine settings in GCP Console and split traffic between the current version and newly deployed versions accordingly.
- D. Deploy a new version of your application in a Compute Engine instance instead of App Engine and then use GCP Console to split traffic.
Answer: A
NEW QUESTION # 21
What conditions could cause a Multi-AZ Amazon RDS failover to occur? (Choose two.)
- A. Another master user is created
- B. A failure of the primary database instance
- C. An Availability Zone becomes unavailable
- D. A replica of the RDS instance is created in a different region
- E. The RDS instance is stopped manually
Answer: B,C
Explanation:
Explanation/Reference:
Reference https://aws.amazon.com/rds/faqs/
NEW QUESTION # 22
You created an instance of SQL Server 2017 on Compute Engine to test features in the new version. You want to connect to this instance using the fewest number of steps. What should you do?
- A. Install a RDP client in your desktop. Set a Windows username and password in the GCP Console. Use the credentials to log in to the instance.
- B. Install a RDP client on your desktop. Verify that a firewall rule for port 3389 exists.
- C. Set a Windows username and password in the GCP Console. Verify that a firewall rule for port 3389 exists. Click the RDP button in the GCP Console, and supply the credentials to log in.
- D. Set a Windows password in the GCP Console. Verify that a firewall rule for port 22 exists. Click the RDP button in the GCP Console and supply the credentials to log in.
Answer: C
Explanation:
https://cloud.google.com/compute/docs/instances/connecting-to-windows#remote-desktop-connection-app
https://cloud.google.com/compute/docs/instances/windows/generating-credentials
https://cloud.google.com/compute/docs/instances/connecting-to-windows#before-you-begin
NEW QUESTION # 23
Your coworker has helped you set up several configurations for gcloud. You've noticed that you're running commands against the wrong project. Being new to the company, you haven't yet memorized any of the projects. With the fewest steps possible, what's the fastest way to switch to the correct configuration?
- A. Re-authenticate with the gcloud auth login command and select the correct configurations on login.
- B. Run gcloud config list followed by gcloud config activate.
- C. Run gcloud config configurations list followed by gcloud config configurations activate.
- D. Run gcloud configurations list followed by gcloud configurations activate .
Answer: C
Explanation:
as gcloud config configurations list can help check for the existing configurations and activate can help switch to the configuration.
gcloud config configurations list lists existing named configurations
gcloud config configurations activate activates an existing named configuration Obtains access credentials for your user account via a web-based authorization flow. When this command completes successfully, it sets the active account in the current configuration to the account specified. If no configuration exists, it creates a configuration named default.
NEW QUESTION # 24
You created an instance of SQL Server 2017 on Compute Engine to test features in the new version. You want to connect to this instance using the fewest number of steps. What should you do?
- A. Set a Windows password in the GCP Console. Verify that a firewall rule for port 22 exists.
Click the RDP button in the GCP Console and supply the credentials to log in. - B. Install a RDP client in your desktop. Set a Windows username and password in the GCP Console.
Use the credentials to log in to the instance. - C. Install a RDP client on your desktop. Verify that a firewall rule for port 3389 exists.
- D. Set a Windows username and password in the GCP Console. Verify that a firewall rule for port
3389 exists.
Click the RDP button in the GCP Console, and supply the credentials to log in.
Answer: B
NEW QUESTION # 25
Your organization uses G Suite for communication and collaboration. All users in your organization have a G Suite account. You want to grant some G Suite users access to your Cloud Platform project. What should you do?
- A. Grant them the required IAM roles using their G Suite email address.
- B. Enable Cloud Identity in the GCP Console for your domain.
- C. Create a CSV sheet with all users' email addresses. Use the gcloud command line tool to convert them into Google Cloud Platform accounts.
- D. In the G Suite console, add the users to a special group called [email protected]. Rely on the default behavior of the Cloud Platform to grant users access if they are members of this group.
Answer: A
NEW QUESTION # 26
A Solutions Architect must select the storage type for a big data application that requires very high sequential I/
O. The data must persist if the instance is stopped.
Which of the following storage types will provide the best fit at the LOWEST cost for the application?
- A. An Amazon EBS provisioned IOPS SSD volume.
- B. An Amazon EC2 instance store local SSD volume.
- C. An Amazon EBS general purpose SSD volume.
- D. An Amazon EBS throughput optimized HDD volume.
Answer: A
NEW QUESTION # 27
You want to configure autohealing for network load balancing for a group of Compute Engine instances that run in multiple zones, using the fewest possible steps. You need to configure re-creation of VMs if they are unresponsive after 3 attempts of 10 seconds each. What should you do?
- A. Create a managed instance group. Set the Autohealing health check to healthy (HTTP)
- B. Create an HTTP load balancer with a backend configuration that references an existing instance group. Set the health check to healthy (HTTP)
- C. Create an HTTP load balancer with a backend configuration that references an existing instance group.
Define a balancing mode and set the maximum RPS to 10. - D. Create a managed instance group. Verify that the autoscaling setting is on.
Answer: D
NEW QUESTION # 28
Your team is running an on-premises ecommerce application. The application contains a complex set of microservices written in Python, and each microservice is running on Docker containers. Configurations are injected by using environment variables. You need to deploy your current application to a serverless Google Cloud cloud solution. What should you do?
- A. Use your existing continuous integration and delivery (CI/CD) pipeline. Use the generated Docker images and deploy them to Cloud Function. Use the same configuration as on-premises.
- B. Use your existing CI/CD pipeline Use the generated Docker images and deploy them to Cloud Run. Update the configurations and the required endpoints.
- C. Use the existing codebase and deploy each service as a separate Cloud Function Update the configurations and the required endpoints.
- D. Use your existing codebase and deploy each service as a separate Cloud Run Use the same configurations as on-premises.
Answer: B
NEW QUESTION # 29
You have an object in a Cloud Storage bucket that you want to share with an external company.
The object contains sensitive data. You want access to the content to be removed after four hours. The external company does not have a Google account to which you can grant specific user-based access privileges. You want to use the most secure method that requires the fewest steps. What should you do?
- A. Configure the storage bucket as a static website and furnish the object's URL to the company.
Delete the object from the storage bucket after four hours. - B. Set object access to `public' and use object lifecycle management to remove the object after four hours.
- C. Create a signed URL with a four-hour expiration and share the URL with the company.
- D. Create a new Cloud Storage bucket specifically for the external company to access.
Copy the object to that bucket. Delete the bucket after four hours have passed.
Answer: C
NEW QUESTION # 30
Developers are creating a new online transaction processing (OLTP) application for a small database that is very read-write intensive. A single table in the database is updated continuously throughout the day, and the developers want to ensure that the database performance is consistent.
Which Amazon EBS storage option will achieve the MOST consistent performance to help maintain application performance?
- A. Cold HDD
- B. General Purpose SSD
- C. Throughput Optimized HDD
- D. Provisioned IOPS SSD
Answer: D
Explanation:
Explanation
NEW QUESTION # 31
You need to produce a list of the enabled Google Cloud Platform APIs for a GCP project using the gcloud command line in the Cloud Shell. The project name is my-project. What should you do?
- A. Run gcloud init to set the current project to my-project, and then run gcloud services list --available.
- B. Run gcloud projects list to get the project ID, and then run gcloud services list --project <project ID>.
- C. Run gcloud info to view the account value, and then run gcloud services list --account <Account>.
- D. Run gcloud projects describe <project ID> to verify the project value, and then run gcloud services list
--available.
Answer: B
NEW QUESTION # 32
You need to create a copy of a custom Compute Engine virtual machine (VM) to facilitate an expected increase in application traffic due to a business acquisition. What should you do?
- A. Create a Compute Engine snapshot of your base VM. Create your images from that snapshot.
- B. Create a custom Compute Engine image from a snapshot. Create your instances from that image.
- C. Create a custom Compute Engine image from a snapshot. Create your images from that image.
- D. Create a Compute Engine snapshot of your base VM. Create your instances from that snapshot.
Answer: B
Explanation:
A custom image belongs only to your project. To create an instance with a custom image, you must first have a custom image.
NEW QUESTION # 33
......
Get Instant Access to Associate-Cloud-Engineer Practice Exam Questions: https://www.testkingpdf.com/Associate-Cloud-Engineer-testking-pdf-torrent.html
The Best Associate-Cloud-Engineer Exam Study Material Premium Files and Preparation Tool: https://drive.google.com/open?id=1TL4RS9tUyZNBo4j8RICdTuzYuA0H-_gF

