Skip to content
GCP-ACE
Configuring access and security
medium
Question 8 of 46

A security team wants firewall rules to follow VM identity and be harder for instance admins to alter casually by editing metadata. Which targeting method should it prefer?

ATarget and source service accounts
BNetwork tags
CCloud NAT rules
DExternal IP address ranges only

Educational Content — CertQnA practice questions are written against official exam objectives, covering the same domains tested on the real exam. All content is original and independent — not actual exam questions, not affiliated with any certification vendor. Learn more about our content policy

Discussion

Be the first to share your understanding of this concept

⚠️ Discussion is for concept clarification only. Do not share or request actual exam questions or answers.

Sign in to join the discussion