ACE Practice Questions
Prepare for ACE with more than an answer.
Unlock the full exam and previous versions
- v1Google Cloud Associate Cloud Engineer 155 questions Locked
- ACELegacy Associate Cloud Engineer 440 questions Current
- Exam fee
- $125 USD
- Level
- Associate
- Valid for
- 3 years
Domains covered on the exam 4
- Setting up a cloud solution environment23%
- Planning and implementing a cloud solution30%
- Ensuring successful operation of a cloud solution27%
- Configuring access and security20%
- 1
You deployed an App Engine application using gcloud app deploy, but it did not deploy to the intended project. You want to find out why this happened and where the application deployed. What should you do?
Show answer details
Correct answer: A
- 2
You are using multiple configurations for gcloud. You want to review the configured Kubernetes Engine cluster of an inactive configuration using the fewest possible steps. What should you do?
Show answer details
Correct answer: D
- 3
An application generates daily reports in a Compute Engine virtual machine (VM). The VM is in the project corp-iot-insights. Your team operates only in the project corp-aggregate-reports and needs a copy of the daily exports in the bucket corp-aggregate-reports-storage. You want to configure access so that the daily reports from the VM are available in the bucket corp-aggregate-reports-storage and use as few steps as possible while following Google-recommended practices. What should you do?
Show answer details
Correct answer: A
- 4
You need to update a deployment in Deployment Manager without any resource downtime in the deployment. Which command should you use?
Show answer details
Correct answer: B
- 5
You are tasked with setting up a network for a new project that will host a three-tier web application (web, app, database). The security policy requires that the database instances can only accept traffic from the application tier instances, and the application tier can only accept traffic from the web tier. Internet traffic should only reach the web tier. All instances are in the same VPC. How should you implement this policy using firewall rules and network tags?
graph TD Internet -->|HTTPS| Web_Tier[Web Tier Instances (Tag: web-server)]; Web_Tier -->|TCP:8080| App_Tier[App Tier Instances (Tag: app-server)]; App_Tier -->|TCP:5432| DB_Tier[Database Tier Instances (Tag: db-server)];Show answer details
Correct answer: B
This configuration correctly implements the required traffic flow. It uses target tags to apply rules to specific tiers and source tags to specify which tier is allowed to send traffic. The first rule allows public internet traffic to the web tier. The second rule allows traffic from the web tier to the app tier. The third rule allows traffic from the app tier to the database tier.
- 6
You significantly changed a complex Deployment Manager template and want to confirm that the dependencies of all defined resources are properly met before committing it to the project. You want the most rapid feedback on your changes. What should you do?
Show answer details
Correct answer: D
- 7
You need to set up a policy so that videos stored in a specific Cloud Storage Regional bucket are moved to Coldline after 90 days, and then deleted after one year from their creation. How should you set up the policy?
Show answer details
Correct answer: A
A
- 8
You need to grant access for three users so that they can view and edit table data on a Cloud Spanner instance. What should you do?
Show answer details
Correct answer: A
A
- 9
Your company uses a large number of Google Cloud services centralized in a single project. All teams have specific projects for testing and development. The DevOps team needs access to all of the production services in order to perform their job. You want to prevent Google Cloud product changes from broadening their permissions in the future. You want to follow Google-recommended practices. What should you do?
Show answer details
Correct answer: B
B
- 10
Your finance team wants to view the billing report for your projects. You want to make sure that the finance team does not get additional permissions to the project. What should you do?
Show answer details
Correct answer: C
C
