A Professional Cloud Network Engineer implements and manages network architectures in Google Cloud Platform. This individual has at least 1 year of hands-on experience working with Google Cloud Platform and may work on networking or cloud teams with architects who design the infrastructure. By leveraging experience implementing VPCs, hybrid connectivity, network services, and security for established network architectures, this individual ensures successful cloud implementations using the command line interface or the Google Cloud Platform Console.
Objectives
The Professional Cloud Network Engineer exam assesses your ability to:
Design, Plan, and Prototype a GCP Network
Implement a GCP Virtual Public Cloud (VPC)
Configure Network Services
Implement Hybrid Interconnectivity
Implement Network Security
Audience
Please Refer abjuctives
Prerequisites
Familiarity with the Linux command line, web servers, and text editors.
Content
Section 1: Designing, Planning, and Prototyping a GCP Network
1.1 Designing the overall network architecture. Considerations include:
Failover and disaster recovery strategy
Options for high availability
DNS strategy (e.g., on-premises, Cloud DNS, GSLB)
Meeting business requirements
Meeting availability SLAs
Choosing the appropriate load balancing options
Optimizing for latency (e.g., MTU size, caches, CDN)
Understanding how quotas are applied per project and per VPC
Hybrid connectivity (e.g., Google private access for hybrid connectivity)
Container networking
IAM and security
SaaS, PaaS, and IaaS services
Microsegmentation for security purposes (e.g., using metadata, tags)
1.2 Designing a Virtual Private Cloud (VPC). Considerations include:
CIDR range for subnets
IP addressing (e.g., static, ephemeral, private)
Standalone or shared
Multiple vs. single
Multi-zone and multi-region
Peering
Firewall (e.g., service account–based, tag-based)
Routes
Differences between Google Cloud Networking and other cloud platforms
1.3 Designing a hybrid network. Considerations include:
Using Interconnect (e.g., dedicated vs. partner)
Peering options (e.g., direct vs. carrier)
IPsec VPN
Cloud Router
Failover and disaster recovery strategy (e.g., building high availability with BGP using cloud router)
Shared vs. standalone VPC Interconnect access
Cross-organizational access
Bandwidth
1.4 Designing a Container IP Addressing plan for Google Kubernetes Engine
Section 2: Implementing a GCP Virtual Private Cloud (VPC)