Networking in Google Cloud
This training course builds on the networking concepts covered in the Networking Fundamentals in Google Cloud course. Through presentations, demonstrations, and labs, participants explore and deploy Google Cloud networking technologies, including Virtual Private Cloud (VPC) networks, subnets, firewalls, and interconnection among networks. The course also covers load balancing, Cloud DNS, Cloud CDN, Cloud NAT, and common network design patterns.
- Duration: 3 days
- Languages: English, German
- Level: Intermediate
- Group size: Up to 16
What you'll learn
- Configure VPC networks, subnets, and routers.
- Control administrative access to VPC objects and network access to endpoints in VPCs.
- Interconnect networks among Google Cloud projects and implement network connectivity between them.
- Implement load balancing and configure traffic management among load balancer backend services.
- Use Cloud CDN to reduce latency.
- Optimize network spend using Network Service Tiers.
- Configure private connection options to provide access to external resources and services from internal networks.
Prerequisites
- Completion of the Google Cloud Fundamentals: Core Infrastructure course or equivalent experience.
- Prior understanding of the 7-layer OSI model.
- Prior understanding of IPv4 addressing.
- Prior experience with managing IPv4 routes.
Course outline
VPC Networking Fundamentals
- VPC networks
- Multiple Network Interfaces
- Network Service Tiers
Sharing VPC Networks
- Shared VPC
- VPC Network Peering
- Migrating a VM between networks
Network Monitoring and Logging
- Monitoring
- Logging
Network Routing and Addressing in Google Cloud
- VPC Routing
- IPv6
- BYOIP
- Cloud DNS
Private Connection Options
- Private Connection Options
- Private Google Access
- Private Services Access
- Private Service Connect
- Cloud NAT
Introduction to Network Architecture
- Cloud network architecture overview
- Key considerations
Network Topologies
- Hub and spoke topology
- Other topologies
- Getting topology data
- Best practices
Distributed Denial of Service (DDoS) Protection
- How DDoS attacks work
- Google Cloud mitigations
- Types of complementary partner products
Controlling Access to VPC Networks
- IAM
- Cloud Firewall
- Cloud IDS
- Secure Web Proxy
Advanced Security Monitoring and Analysis
- Packet Mirroring for network traffic inspection
- Network security best practices
Hybrid Load Balancing and Traffic Management
- Hybrid load balancing
- Traffic management
Caching and Optimizing Load Balancing
- Internal network load balancers as next hops
- Cloud CDN
- Cloud Armor
- Load balancer optimization strategies
Connectivity options
- Google Cloud connectivity options
- Dedicated Interconnect
- Partner Interconnect
- Cross-Cloud Interconnect
Cloud VPN
- Use case for Cloud VPN
- HA VPN topologies
- HA VPN over Cloud Interconnect
- Influence best path selection
Related courses
Network Security Essentials
This course provides a practical guide to securing networks on Google Cloud.The course will cover core network security principles and their application using Google Cloud's managed services. Network security concepts and best practices will be explored through practical demonstrations and real-world application scenarios. The course uses presentations, demos, and discussions, with real-world examples, to ensure effective learning
Security Command Center Enterprise - Essentials
This course provides a comprehensive overview of Google Cloud Security Command Center(SCC) Enterprise, a Cloud-Native Application Protection Plaorm (CNAPP) solution that helpsorganizations prevent, detect, and respond to threats across Google Cloud services.You will learn about core SCC Enterprise features, including enhanced threat detection,in-depth vulnerability management, and integrated case management. Fundamental concepts in threat management and vulnerability assessment will also be covered, along with practical demonstrations of how to use SCC Enterprise to identify, investigate, and remediate security risks within your cloud environment.
Security in Google Cloud
This training course gives you a broad study of security controls and techniques in Google Cloud. Through lectures, demonstrations, and labs, you explore and deploy the components of a secure Google Cloud solution. You use services including Cloud Identity, Identity and Access Management (IAM), Cloud Load Balancing, Cloud IDS, Web Security Scanner, BeyondCorp Enterprise, and Cloud DNS.
Not sure which course fits?
Book a 30-minute call. We'll look at where your team is, what they need to be able to do, and put together either a specific course date or a tailored learning plan.