Your company's current network architecture has three VPC Service Controls perimeters:
One perimeter (PERIMETER_PROD) to protect production storage buckets
One perimeter (PERIMETER_NONPROD) to protect non-production storage buckets
One perimeter (PERIMETER_VPC) that contains a single VPC (VPC_ONE)
In this single VPC (VPC_ONE), the IP_RANGE_PROD is dedicated to the subnets of the production workloads, and the IP_RANGE_NONPROD is dedicated to subnets of non-production workloads. Workloads cannot be created outside those two ranges. You need to ensure that production workloads can access only production storage buckets and non-production workloads can access only non-production storage buckets with minimal setup effort. What should you do?
The correct answer is D because it meets the following requirements:
It matches the hub-and-spoke model of the on-premises network, where each spoke is a separate VPC network that is connected to a central hub VPC network.
VPC Network Peering overview | VPC
Hub-and-spoke network architecture | Cloud Architecture Center
Rosina
2 months agoBrock
14 days agoRebecka
24 days agoJerlene
1 months agoHyman
2 months agoElise
18 days agoMarti
1 months agoGabriele
1 months agoAnna
2 months agoKimbery
14 days agoNikita
24 days agoMicah
1 months agoVincent
2 months agoLindsay
2 months agoJoye
29 days agoClement
2 months agoVanda
2 months agoVincent
3 months ago