☎  076 959 6407✉  support@quizcrazepro.co.za
Learn. Practice. Build your future.
BlogHelpContact
G

Google Professional Cloud Network Engineer

169 Questions120 Minutes70% Passing Score▣ Updated: Sep 2026

Question 90 of 169

Single answer
You deployed a hub-and-spoke architecture in your Google Cloud environment that uses VPC Network Peering to connect the spokes to the hub. For security reasons, you deployed a private Google Kubernetes Engine (GKE) cluster in one of the spoke projects with a private endpoint for the control plane. You configured authorized networks to be the subnet range where the GKE nodes are deployed. When you attempt to reach the GKE control plane from a different spoke project, you cannot access it. You need to allow access to the GKE control plane from the other spoke projects. What should you do?
AAdd a firewall rule that allows port 443 from the other spoke projects.
BEnable Private Google Access on the subnet where the GKE nodes are deployed.
CConfigure the authorized networks to be the subnet ranges of the other spoke projects.
DDeploy a proxy in the spoke project where the GKE nodes are deployed and connect to the control plane through the proxy.
Correct Answer: D

Deploy a proxy in the spoke project where the GKE nodes are deployed and connect to the control plane through the proxy.

Explanation

The correct answer is highlighted above. Review the wording carefully, then use the next question to continue building your understanding of Google certification topics.

About this practice exam

Review 169 Google questions with answers and explanations. Use the navigation to move through the exam at your own pace.