🔥 3-day streak
Google Cloud Professional Cloud Network Engineer62 / 142
Question 62 of 142
Your team runs a private GKE cluster where nodes have only internal IP addresses. Developers connect from the corporate office (public egress IP 203.0.113.10/32) using kubectl, and a CI/CD pipeline runs on a Compute Engine VM in the same VPC (internal IP 10.20.0.5). Security requires that the Kubernetes API server (control plane) reject connections from any source except these two. Which configuration meets the requirement with the least operational overhead?
Reviewed for accuracy · Report an issueNext question