Firewall Insights shows no log rows for your Compute Engine firewall rules. How do you troubleshoot so Firewall Insights can evaluate rule efficiency?
Choose an answer
Tap an option to check your answer.
Correct answer: Enable Firewall Rules Logging for the firewall rules you want to monitor..
Why this is the answer
To troubleshoot why Firewall Insights shows no log rows, you must enable Firewall Rules Logging for the specific firewall rules you intend to monitor. Firewall Insights relies on these logs to analyze rule efficiency and provide recommendations. Without logging enabled on the rules themselves, there is no data for Firewall Insights to process. Enabling VPC flow logging is incorrect because while it captures network flow information, it doesn't specifically log firewall rule hits or denials, which is what Firewall Insights uses. Verifying your IAM role is incorrect because while necessary for managing firewall rules, it doesn't directly enable the logging required for Firewall Insights. Installing the Google Cloud SDK and checking logs via the command line is incorrect because the issue isn't about accessing logs, but rather that the necessary logs aren't being generated in the first place.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed