You enable VPC firewall logging on a deny rule for troubleshooting. Where do those firewall logs appear and what key information do they include?
Choose an answer
Tap an option to check your answer.
Correct answer: Logs are written to Cloud Logging and include whether the packet was allowed or denied plus connection metadata (IP/port/protocol).
Why this is the answer
VPC firewall logging sends logs to Cloud Logging. These logs capture crucial information for troubleshooting, including whether a packet was allowed or denied by a specific firewall rule, along with connection metadata such as source/destination IP addresses, ports, and protocol. This allows for detailed analysis of network traffic and rule effectiveness. Storing raw PCAP files in Cloud Storage is not a native feature of VPC firewall logging. VPC Flow Logs are a separate logging mechanism that primarily record flow information, not explicit allow/deny decisions by firewall rules. Cloud Monitoring collects metrics, not detailed event logs, from firewall rules.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed