
Ultimate access to all questions.
Your company has deployed compute resources in VPCs within the Development Project, with applications running on GCE Instances across three VPCs. A new security mandate requires sampling network flows to and from these VM instances. Which solution best meets this requirement?
A
Enable VPC Flow Logs in the subnets hosting the instances to sample network traffic.
B
Configure a Logs Sink with an inclusion filter to sample VPC traffic, post enabling VPC Flow Logs.
C
Activate Firewall logs for rules impacting instances in the VPCs to capture allowed or denied traffic.
D
Install the FluentD agent on instances for forwarding application logs to Cloud Logging, unrelated to network traffic.