Courseiva
Implementing Hybrid InterconnectivityeasyMultiple ChoiceObjective-mapped

PCNE Implementing Hybrid Interconnectivity Practice Question

A company wants to connect their on-premises network to Google Cloud using a VPN with high availability and 99.99% SLA. They have two Cloud VPN gateways, each with two external IP addresses. Which configuration best meets the high availability requirement?

⚠ Common exam trap

Many exam-takers assume two gateways with one tunnel each is sufficient for high availability, but they overlook the requirement for two tunnels per gateway to meet the 99.99% SLA, as well as the need for two separate on-premises devices to avoid a single point of failure on the customer side.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Deploy two Cloud VPN gateways, each with two tunnels to two separate on-premises VPN devices

It meets the 99.99% SLA requirement by deploying two Cloud VPN gateways, each with two tunnels to two separate on-premises VPN devices. This configuration provides both gateway-level redundancy and tunnel-level redundancy, ensuring that if one gateway, tunnel, or on-premises device fails, traffic can failover to another tunnel. Google Cloud's HA VPN requires at least two tunnels per gateway to achieve the 99.99% SLA, and using two separate on-premises devices eliminates the single point of failure on the customer side.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Deploy two Cloud VPN gateways, each with one tunnel to one on-premises VPN device

    Why it's wrong here

    Single tunnel per gateway provides no redundancy if the peer device fails.

  • Deploy two Cloud VPN gateways, each with two tunnels to two separate on-premises VPN devices

    Why this is correct

    Provides redundancy at both ends; meets 99.99% SLA.

  • Deploy one Cloud VPN gateway with two tunnels to two separate on-premises VPN devices

    Why it's wrong here

    Single Cloud VPN gateway is a single point of failure, does not meet 99.99% SLA.

  • Deploy one Cloud VPN gateway with one tunnel to one on-premises VPN device

    Why it's wrong here

    No redundancy at all.

About these practice questions

This PCNE question is part of Courseiva's 961-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This PCNE practice question is part of Courseiva's free Google Cloud certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the PCNE exam.