Intrigued by the art of cloud architecture? Discover how to design, develop, and manage robust, secure, scalable, and dynamic solutions on Google Cloud as you prepare for the Professional Cloud Architect exam!
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.
Last updated
A financial enterprise runs a distributed microservices application inside an on-premises Kubernetes cluster managed with an Istio service mesh. The enterprise needs to expose several services to partner developers while implementing centralized API governance.
The solution must satisfy the following architectural requirements:
Which solution should the cloud architect recommend?
Deploy the Apigee Adapter for Envoy within the on-premises service mesh to act as a local Policy Decision Point connected to the Apigee cloud management plane.
Disable sidecar injection on the microservice Pods and implement JWT authentication and quota enforcement directly inside the application code.
Route all on-premises microservice requests through a Google Cloud-hosted Apigee X instance using an external Cloud Load Balancer.
Deploy a complete on-premises Apigee hybrid runtime plane in the data center to process API management traffic locally.
Deploy the Apigee Adapter for Envoy within the on-premises service mesh to act as a local Policy Decision Point connected to the Apigee cloud management plane.
Apigee Adapter for Envoy is an API gateway integration solution that combines the lightweight proxy capabilities of Envoy (and Istio) with the centralized governance and analytics features of the Apigee platform. It allows organizations to deploy a lightweight data plane directly adjacent to backend services while maintaining centralized management in Google Cloud.
Disable sidecar injection on the microservice Pods and implement JWT authentication and quota enforcement directly inside the application code.
Route all on-premises microservice requests through a Google Cloud-hosted Apigee X instance using an external Cloud Load Balancer.
Deploy a complete on-premises Apigee hybrid runtime plane in the data center to process API management traffic locally.