{"id":13001,"date":"2026-09-16T05:50:05","date_gmt":"2026-09-16T05:50:05","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=13001"},"modified":"2026-09-16T05:50:05","modified_gmt":"2026-09-16T05:50:05","slug":"google-associate-cloud-engineer-practice-test-questions-and-exam-dumps-part-13-q241-260","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/google-associate-cloud-engineer-practice-test-questions-and-exam-dumps-part-13-q241-260\/","title":{"rendered":"Google Associate Cloud Engineer Practice Test Questions and Exam Dumps Part 13 Q241-260"},"content":{"rendered":"<p><b>View Full <a href=\"https:\/\/www.examlabs.com\/associate-cloud-engineer-exam-dumps\">Google Associate Cloud Engineer Exam Dumps<\/a> and Practice Test Dumps<\/b><\/p>\n<p>&nbsp;<\/p>\n<h3><b>Q241. Which Google Cloud service helps protect web applications from common application-layer attacks?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Cloud Armor<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Cloud Scheduler<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Cloud Storage<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Cloud Router<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Cloud Armor provides security controls designed to protect applications and services from various network and application-layer threats. It can be used with Google Cloud Load Balancing to help protect web applications from malicious traffic, including common web attacks and certain denial-of-service scenarios. Administrators can configure security policies containing rules that determine which requests should be allowed, denied, or otherwise handled. Cloud Router manages dynamic routing, Cloud Scheduler runs scheduled tasks, and Cloud Storage provides object storage. Cloud Armor is therefore the appropriate choice when the primary requirement is protecting externally accessible applications from unwanted or malicious traffic.<\/span><\/p>\n<h3><b>Q242. Which Google Cloud service caches content closer to users to reduce latency for frequently requested web content?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Cloud VPN<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Cloud CDN<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Cloud SQL<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Cloud KMS<\/span><\/p>\n<p><b>Correct Answer: 2)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Cloud CDN improves the delivery of web content by caching eligible content at Google&#8217;s globally distributed edge locations. When users request cached content, the content can be served from a location closer to them instead of repeatedly retrieving it from the origin. This can reduce latency and decrease the amount of traffic reaching the backend application. Cloud CDN commonly works with Google Cloud Load Balancing. Cloud VPN provides encrypted network connectivity, Cloud SQL provides managed relational databases, and Cloud KMS manages cryptographic keys. Therefore, Cloud CDN is the appropriate service for accelerating delivery of cacheable content to geographically distributed users.<\/span><\/p>\n<h3><b>Q243. Which Cloud Storage encryption option allows an organization to control encryption keys through Cloud KMS?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Google-managed encryption keys<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Customer-managed encryption keys<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Anonymous encryption<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Temporary firewall keys<\/span><\/p>\n<p><b>Correct Answer: 2)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Customer-managed encryption keys, commonly called CMEK, allow organizations to use encryption keys managed through Cloud Key Management Service (Cloud KMS) for supported Google Cloud resources and services. This provides greater control over key lifecycle operations, access permissions, rotation, and auditing compared with relying only on Google-managed encryption keys. Administrators can control who can use the cryptographic keys and can apply organizational key-management policies. Google-managed keys are handled automatically by Google and require less administration. Firewall rules and anonymous access are unrelated to encryption-key management. CMEK is therefore appropriate when an organization requires additional control over encryption keys.<\/span><\/p>\n<h3><b>Q244. What is the primary purpose of Cloud KMS in Google Cloud?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Managing cryptographic keys<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Managing DNS zones<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Hosting container images<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Scheduling recurring jobs<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Cloud Key Management Service (Cloud KMS) is designed to create, manage, protect, and control access to cryptographic keys used for encryption and other supported cryptographic operations. Organizations can use Cloud KMS to establish key-management processes, control permissions, rotate keys, and audit key usage. It can also support customer-managed encryption requirements for compatible Google Cloud services. Cloud DNS manages DNS records, Artifact Registry stores software artifacts and container images, and Cloud Scheduler executes recurring jobs. Cloud KMS should therefore be selected when the requirement specifically involves centralized management and control of cryptographic keys.<\/span><\/p>\n<h3><b>Q245. Which Cloud KMS concept represents a particular version of cryptographic material used by a key?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Key ring<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Crypto key version<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Project folder<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Service endpoint<\/span><\/p>\n<p><b>Correct Answer: 2)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A crypto key version represents a specific version of cryptographic material associated with a Cloud KMS crypto key. Key versions are important for key rotation because new versions can be created while previous versions may remain available for decrypting data encrypted with them, depending on the configuration and service requirements. A key ring is a logical grouping of crypto keys and does not itself contain cryptographic material. Projects and service endpoints are unrelated to key versions. Understanding key versions helps administrators manage rotation, encryption, decryption, and the lifecycle of customer-managed cryptographic keys in Google Cloud.<\/span><\/p>\n<h3><b>Q246. What is the main purpose of a Cloud KMS key ring?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> To group related cryptographic keys<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> To provide internet connectivity<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> To store application logs<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> To distribute HTTP traffic<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A Cloud KMS key ring is a logical grouping used to organize related cryptographic keys. Key rings are created within a specific Google Cloud location and can help administrators structure keys according to applications, environments, teams, or other organizational requirements. The key ring itself is not the cryptographic key and does not perform encryption independently. Cloud KMS provides the overall key-management functionality, while crypto keys and their versions represent the actual cryptographic resources. Internet connectivity is handled by networking services, logs by Cloud Logging, and HTTP traffic distribution by load-balancing services.<\/span><\/p>\n<h3><b>Q247. Which BigQuery feature can reduce the amount of data scanned when querying a large table organized by a date column?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Table partitioning<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Cloud NAT<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> VPC Peering<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Cloud Scheduler<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">BigQuery table partitioning divides a large table into smaller partitions based on a selected partitioning method, such as a date or timestamp column. When a query includes an appropriate filter on the partitioning column, BigQuery can limit processing to relevant partitions rather than scanning the entire table. This can improve query efficiency and reduce unnecessary data processing. Partitioning is especially useful for large datasets where queries commonly filter by time periods. Cloud NAT and VPC Peering are networking services, while Cloud Scheduler is used for scheduled tasks. Therefore, partitioning is the appropriate BigQuery feature for this requirement.<\/span><\/p>\n<h3><b>Q248. Which BigQuery feature organizes table data based on the values of selected columns to improve query efficiency?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Clustering<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Cloud Armor<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Cloud NAT<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Cloud VPN<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">BigQuery clustering organizes table data based on the values in one or more selected columns. When queries frequently filter or aggregate using clustered columns, clustering can improve query performance by helping BigQuery process relevant data more efficiently. Clustering can be especially beneficial for large tables where certain columns are frequently used in query filters. It is different from partitioning, which divides data into separate partitions according to a partitioning specification. Cloud Armor, Cloud NAT, and Cloud VPN are networking or security services and do not organize BigQuery table data. Therefore, clustering is the correct choice for this requirement.<\/span><\/p>\n<h3><b>Q249. Which BigQuery capability allows querying data stored outside BigQuery without first loading it into a native BigQuery table?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> External table<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Cloud NAT<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Instance template<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Cloud Router<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">BigQuery external tables allow users to query certain data stored outside native BigQuery storage. This can be useful when data already exists in supported external locations and the organization wants to analyze it without immediately loading it into a native BigQuery table. External tables can help simplify architectures where data remains in services such as Cloud Storage. Administrators should consider performance and supported data-source limitations when choosing this approach. Cloud NAT, instance templates, and Cloud Router serve networking or Compute Engine purposes and are unrelated to querying externally stored analytical data.<\/span><\/p>\n<h3><b>Q250. Which Cloud SQL feature allows a database instance to automatically create backups according to a configured schedule?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Automated backups<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Network tags<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Cloud CDN<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Firewall priorities<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Cloud SQL automated backups provide scheduled backups of supported managed database instances. Automated backups are an important part of database protection because they provide recovery points that can be used when data needs to be restored. Administrators can configure backup-related settings according to the requirements of the database environment. Automated backups are different from read replicas, which primarily support read scaling and certain availability or recovery scenarios. Network tags, Cloud CDN, and firewall priorities do not provide database backup functionality. Therefore, when the requirement is scheduled automatic database backups, Cloud SQL automated backups are the appropriate feature.<\/span><\/p>\n<h3><b>Q251. Which Cloud SQL capability allows a database to be restored to a specific point in time within the available recovery window?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Point-in-time recovery<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Cloud NAT<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Cloud CDN<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> VPC Peering<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Cloud SQL point-in-time recovery allows an administrator to restore a database instance to a specific point in time within the available recovery window, using backups and transaction information supported by the service. This capability is valuable when a database is accidentally modified, corrupted, or affected by an unwanted operation and recovery to a precise time is required. Automated backups provide the underlying recovery foundation, while point-in-time recovery provides more precise restoration. Cloud NAT, Cloud CDN, and VPC Peering are networking services and do not provide database restoration capabilities.<\/span><\/p>\n<h3><b>Q252. Which Cloud SQL configuration is designed to improve availability by maintaining a standby instance in another zone?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> High availability<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Table clustering<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Object versioning<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Cloud NAT<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Cloud SQL high availability uses a primary and standby configuration designed to improve database availability. The standby is placed in a different zone from the primary instance so that a zonal failure can be handled through failover. This architecture helps reduce downtime compared with relying on a single database instance in one zone. High availability should not be confused with read replicas, which are primarily intended to provide read scaling and other supported use cases. Table clustering and object versioning apply to different services, while Cloud NAT provides network address translation rather than database redundancy.<\/span><\/p>\n<h3><b>Q253. What is a common reason to create a Cloud SQL read replica?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> To distribute read traffic<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> To create firewall rules<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> To assign IAM roles automatically<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> To provide DNS resolution<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Cloud SQL read replicas can be used to distribute read traffic from an application to additional database instances. This can reduce the read workload on the primary database and help support applications with substantial read demand. Read replicas are also useful for certain reporting or analytics workloads that should not heavily affect the primary instance. They are different from high availability configurations, which focus primarily on improving availability and failover. Firewall rules control network access, IAM controls authorization, and Cloud DNS manages name resolution. Therefore, distributing read traffic is a common reason to use a Cloud SQL read replica.<\/span><\/p>\n<h3><b>Q254. Which Google Cloud networking feature allows VM instances without external IP addresses to access supported Google APIs and services privately?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Private Google Access<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Cloud CDN<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Cloud Scheduler<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Cloud Armor<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Private Google Access allows instances that do not have external IP addresses to access supported Google APIs and services using private connectivity. This is useful for workloads that should remain private while still needing access to services such as Cloud Storage or other supported Google APIs. The VM can remain without a public external address, reducing its direct exposure to the internet. Cloud CDN is designed for content delivery, Cloud Scheduler runs scheduled tasks, and Cloud Armor protects applications. Therefore, Private Google Access is the appropriate networking feature when private VMs need access to supported Google services.<\/span><\/p>\n<h3><b>Q255. Which Google Cloud service provides managed DNS resolution for private resources inside a VPC?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Cloud DNS private zone<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Cloud CDN<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Cloud Storage<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Cloud Build<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A Cloud DNS private zone provides DNS records that are accessible only from authorized VPC networks. It is useful for resolving internal hostnames and service names without exposing those records through public DNS. Organizations can use private zones to create internal naming structures for applications and infrastructure. This is particularly helpful in environments where workloads communicate using stable internal DNS names rather than hard-coded IP addresses. Cloud CDN accelerates content delivery, Cloud Storage stores objects, and Cloud Build supports application builds. Therefore, a Cloud DNS private zone is the appropriate solution for private DNS resolution within a VPC.<\/span><\/p>\n<h3><b>Q256. Which Pub\/Sub feature ensures that messages with the same ordering key can be delivered in order?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Message ordering<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Dead-letter topics<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Cloud NAT<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> IAM Conditions<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Pub\/Sub message ordering allows subscribers to receive messages in order when messages are published using the same ordering key and the required ordering configuration is enabled. This feature is useful for workloads where the sequence of events matters, such as processing updates for the same customer or resource. Without ordering requirements, distributed messaging systems may deliver messages in an order that does not match publication order. Dead-letter topics address messages that cannot be successfully processed after configured delivery attempts. Cloud NAT and IAM Conditions solve networking and authorization requirements rather than message sequencing.<\/span><\/p>\n<h3><b>Q257. What is the purpose of a Pub\/Sub dead-letter topic?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> To store messages that repeatedly fail processing<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> To increase VM CPU capacity<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> To create DNS records<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> To encrypt persistent disks<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A Pub\/Sub dead-letter topic can receive messages that cannot be successfully processed after the configured delivery attempts or conditions are met. This prevents repeatedly failing messages from continuously consuming subscriber processing resources. Applications can later inspect and handle these messages separately, which helps improve reliability and operational troubleshooting. Dead-letter topics are especially useful when malformed data, application bugs, or temporary processing problems cause repeated failures. They do not provide CPU scaling, DNS management, or disk encryption. Therefore, a dead-letter topic is primarily a mechanism for isolating messages that cannot be successfully processed.<\/span><\/p>\n<h3><b>Q258. Which Cloud Run capability allows different revisions of a service to receive different percentages of incoming traffic?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Traffic splitting<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> VPC Peering<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Cloud Storage versioning<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> BigQuery partitioning<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Cloud Run traffic splitting allows administrators to distribute incoming requests among different revisions of a service according to configured percentages. This capability is useful for gradual deployments, canary releases, A\/B testing, and controlled rollouts. For example, a new revision might initially receive a small percentage of traffic before being promoted to handle more requests. Cloud Storage versioning manages object versions, BigQuery partitioning organizes analytical data, and VPC Peering connects networks. Traffic splitting is therefore the appropriate Cloud Run feature when multiple service revisions need to receive controlled portions of application traffic.<\/span><\/p>\n<h3><b>Q259. Which Cloud Run feature can keep a configured number of instances ready to reduce startup latency?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Minimum instances<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Firewall priority<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Storage lifecycle management<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> BigQuery clustering<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Cloud Run minimum instances allows administrators to configure a minimum number of container instances that remain ready to serve requests. Keeping instances available can reduce startup latency for applications where immediate response is important. Without minimum instances, Cloud Run may scale workloads down when they are idle and create new instances when requests arrive. This serverless scaling model is useful for controlling resource consumption, but applications with strict latency requirements may benefit from configured minimum instances. Firewall priorities, Storage lifecycle management, and BigQuery clustering do not control Cloud Run instance availability.<\/span><\/p>\n<h3><b>Q260. Which GKE feature automatically adjusts the number of nodes in a cluster based on workload resource requirements?<\/b><\/h3>\n<p><b>1)<\/b><span style=\"font-weight: 400;\"> Cluster autoscaler<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>2)<\/b><span style=\"font-weight: 400;\"> Cloud CDN<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>3)<\/b><span style=\"font-weight: 400;\"> Cloud DNS<\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><b>4)<\/b><span style=\"font-weight: 400;\"> Cloud KMS<\/span><\/p>\n<p><b>Correct Answer: 1)<\/b><\/p>\n<p><b>Explanation:<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The GKE cluster autoscaler adjusts the number of nodes in a cluster based on the resource requirements of scheduled workloads and available capacity. When workloads require additional resources and existing nodes cannot accommodate them, the cluster autoscaler can add nodes within configured limits. When capacity is no longer needed, it can remove suitable nodes to reduce unnecessary resource usage. This is different from the Horizontal Pod Autoscaler, which adjusts the number of pod replicas rather than the number of nodes. Cloud CDN, Cloud DNS, and Cloud KMS provide completely different services and do not manage GKE node capacity.<\/span><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full Google Associate Cloud Engineer Exam Dumps and Practice Test Dumps &nbsp; Q241. Which Google Cloud service helps protect web applications from common application-layer attacks? 1) Cloud Armor 2) Cloud Scheduler 3) Cloud Storage 4) Cloud Router Correct Answer: 1) Explanation: Cloud Armor provides security controls designed to protect applications and services from various [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/13001"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=13001"}],"version-history":[{"count":1,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/13001\/revisions"}],"predecessor-version":[{"id":13016,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/13001\/revisions\/13016"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=13001"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=13001"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=13001"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}