🔥 3-day streak
Google Cloud Professional Cloud Network Engineer54 / 142
Question 54 of 142

Your security team requires that a global external Application Load Balancer serving api.example.com only negotiate TLS 1.2 or higher and disable known-weak cipher suites, while still supporting a broad range of modern clients. The load balancer already has a valid Google-managed certificate attached to its target HTTPS proxy. What is the recommended way to enforce these requirements?

Reviewed for accuracy · Report an issueNext question