Font size
WorksheetsGoogle Cloud Armor
Total questions: 14
Worksheet time: 7mins
Cloud Armor ML-based mechanism automatically detects and helps mitigate high volume .......... DDoS attacks
L3
L4
L6
L7
Which two of the following statements are INCORRECT about Google Cloud Armor?
Google Cloud Armor enforces access control based on IPv4 and IPv6 addresses or CIDRs
Google Cloud Armor is a Ransomware defense service
Google Cloud Armor protection is delivered at the edge of Google’s network
Google Cloud Armor currently is not compatible with any third-party partner security products
Cloud Armor helps to protect Google Cloud deployments from multiple types of threats, including ..... attacks
DDoS
Ransomware
SQL Injection
XSS
One of the requirements for using Google Cloud Armor security policies: The backend service's protocol must be one of HTTP, HTTPS, or HTTP/2 only
False
True
Cloud Armor Adaptive Protection build machine learning models by learning baseline -> detecting attack -> suggesting rule -> mitigating
True
False
We can use rate limiting rules to do the following
Permanently ban clients that exceed a request threshold that we set for a configured duration
Temporarily ban clients that exceed a request threshold that we set for a configured duration
Some of Cloud Armor key features are
Adaptive protection
Bot management
Leverage container workflows and standards
Rate limiting
Cloud Armor Standard provides a .... model
pay as you go pricing
subscription-based pricing
What are rule sources for Cloud Armor preconfigured WAF rules?
CRS 3.0
CRS 3.3
CRS 3.6
CRS 3.2
Cloud Armor Threat Intelligence data is divided into which following category?
Tor exit nodes
Search engines
Known malicious IP addresses
Public cloud IP address ranges
How do we update a single rule in a Google Cloud Armor security policy?
Network Security page > Security policies page > Policy details page > Targets tab > Edit > Update
Network Security page > Security policies page > Policy details page > Rules tab > Delete
Network Security page > Security policies page > Policy details page > Rules tab > Edit > Update
Network Security page > Security policies page > Policy details page > Targets tab > Remove
We can view the logs for a Google Cloud Armor security policy by using....
Logging API
Google Cloud CLI
Google Cloud console
All of them
We can view view audit logs in Cloud Logging by using....
Logging API
Google Cloud CLI
Google Cloud console
All of them
Cloud Armor supports applications deployed on Google Cloud, in.....
a hybrid cloud architecture
a multi-cloud architecture
both
none
