
Answer-first summary for fast verification
Answer: Firewall rules are obstructing traffic.
Options A, B, and C are incorrect because if Flow Logs are not enabled on the subnets to be monitored, no logs will be generated. Similarly, if logs exclusion filters are misconfigured, desired logs may be excluded, and if the security team is looking in the wrong bucket, they won't find the logs. Option D is correct because firewall rules do not impact the generation of logs by Flow Logs. Reference: https://cloud.google.com/vpc/docs/using-flow-logs#no-vpc-flows
Author: LeetQuiz Editorial Team
Ultimate access to all questions.
Your company has requested the central collection of VPC Flow Logs to meet security compliance. You've set up a Logs routing sink with the destination being a Logging bucket in a separate project. However, after a few days, a security team member reports no logs are appearing in the logging bucket. Which of the following is NOT a potential cause for this issue?
A
Flow Logs were not activated in the project under monitoring.
B
The security team is inspecting an incorrect Logging bucket.
C
Logging exclusion filters on the sink are preventing specified logs from being collected.
D
Firewall rules are obstructing traffic.
No comments yet.