
Ultimate access to all questions.
You are responsible for managing Compute Engine instances in a highly secured environment where public Internet access from these VMs is strictly prohibited. Currently, there is no VPN connection available to access an on-premises file server. However, you need to install specific software on one of the Compute Engine instances to proceed with your work. Given these constraints, what is the most secure and effective method to install the required software on the Compute Engine instance?
A
Upload the required installation files to Cloud Storage. Configure the VM on a subnet with a Private Google Access subnet. Assign only an internal IP address to the VM. Download the installation files to the VM using gsutil.
B
Upload the required installation files to Cloud Storage and use firewall rules to block all traffic except the IP address range for Cloud Storage. Download the files to the VM using gsutil.
C
Upload the required installation files to Cloud Source Repositories. Configure the VM on a subnet with a Private Google Access subnet. Assign only an internal IP address to the VM. Download the installation files to the VM using gcloud.
D
Upload the required installation files to Cloud Source Repositories and use firewall rules to block all traffic except the IP address range for Cloud Source Repositories. Download the files to the VM using gsutil.