You need to detect and alert on any changes to firewall rules and VPC peering across the organization. Which Cloud Audit Logs category contains entries for create, update, and delete operations on those networking resources?
Choose an answer
Tap an option to check your answer.
Correct answer: Admin Activity audit logs.
Why this is the answer
Admin Activity audit logs record API calls or other administrative actions that modify the configuration or metadata of resources. Since creating, updating, or deleting firewall rules and VPC peering connections are administrative actions that change resource configurations, these events are captured in Admin Activity logs. This makes them ideal for detecting and alerting on such changes. Data Access audit logs record API calls that read the configuration or metadata of resources, as well as user-provided data. They are not primarily for configuration changes. System Event logs are Google-generated logs for system-level events, not user or administrative actions. Access Transparency logs provide visibility into actions taken by Google staff, not customer-initiated administrative changes.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed