<?xml version="1.0" encoding="utf-8" ?>
<!DOCTYPE FL_Course SYSTEM "https://www.flane.de/dtd/fl_course095.dtd"><?xml-stylesheet type="text/xsl" href="https://portal.flane.ch/css/xml-course.xsl"?><course productid="19870" language="en" source="https://portal.flane.ch/swisscom/en/xml-course/google-ngcp" lastchanged="2026-04-01T10:15:25+02:00" parent="https://portal.flane.ch/swisscom/en/xml-courses"><title>Networking in Google Cloud Platform</title><productcode>NGCP</productcode><vendorcode>GO</vendorcode><vendorname>Google</vendorname><fullproductcode>GO-NGCP</fullproductcode><version>3.0</version><objective>&lt;ul&gt;
&lt;li&gt;Configure VPC networks, subnets, and routers.&lt;/li&gt;&lt;li&gt;Control administrative access to VPC objects.&lt;/li&gt;&lt;li&gt;Control network access to endpoints in VPCs.&lt;/li&gt;&lt;li&gt;Interconnect networks among Google Cloud projects.&lt;/li&gt;&lt;li&gt;Implement network connectivity between Google Cloud projects.&lt;/li&gt;&lt;li&gt;Implement load balancing.&lt;/li&gt;&lt;li&gt;Configure traffic management among load balancer backend services.&lt;/li&gt;&lt;li&gt;Use Cloud CDN to reduce latency.&lt;/li&gt;&lt;li&gt;Optimize network spend using Network Service Tiers.&lt;/li&gt;&lt;li&gt;Configure private connection options to provide access to external resources and services from internal networks.&lt;/li&gt;&lt;/ul&gt;</objective><essentials>&lt;ul&gt;
&lt;li&gt;&lt;span class=&quot;cms-link-marked&quot;&gt;&lt;a class=&quot;fl-href-prod&quot; href=&quot;/swisscom/en/course/google-gcf-ci&quot;&gt;&lt;svg role=&quot;img&quot; aria-hidden=&quot;true&quot; focusable=&quot;false&quot; data-nosnippet class=&quot;cms-linkmark&quot;&gt;&lt;use xlink:href=&quot;/css/img/icnset-linkmarks.svg#linkmark&quot;&gt;&lt;/use&gt;&lt;/svg&gt;Google Cloud Fundamentals: Core Infrastructure &lt;span class=&quot;fl-prod-pcode&quot;&gt;(GCF-CI)&lt;/span&gt;&lt;/a&gt;&lt;/span&gt; course (or equivalent experience)&lt;/li&gt;&lt;li&gt;Prior understanding of the 7 layer OSI model&lt;/li&gt;&lt;li&gt;Prior understanding of IPv4 addressing&lt;/li&gt;&lt;li&gt;Prior experience with managing IPv4 routes&lt;/li&gt;&lt;/ul&gt;</essentials><audience>&lt;p&gt;This course is intended for the following participants:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Network engineers and administrators who are using the Google Cloud console or are planning to do so&lt;/li&gt;&lt;li&gt;Individuals who want to be exposed to software-defined networking solutions in the cloud.&lt;/li&gt;&lt;/ul&gt;</audience><outline>&lt;h4&gt;Module 1: VPC Networking Fundamentals&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;VPC networks&lt;/li&gt;&lt;li&gt;Multiple Network Interfaces&lt;/li&gt;&lt;li&gt;Network Service Tiers&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Create a Compute Engine VM with multiple network interfaces.&lt;/li&gt;&lt;li&gt;Use the standard tier to lower cloud networking costs.&lt;/li&gt;&lt;li&gt;Use the premium tier to provide lower latency and faster access to Google Cloud resources.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 2: Sharing VPC Networks&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Shared VPC&lt;/li&gt;&lt;li&gt;VPC Network Peering&lt;/li&gt;&lt;li&gt;Migrating a VM between networks&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Describe the different ways to share VPC networks that are available in Google Cloud.&lt;/li&gt;&lt;li&gt;Recognize when to use Shared VPC and when to use VPC Network Peering.&lt;/li&gt;&lt;li&gt;Configure peering between unrelated VPC networks.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 3: Network Monitoring and Logging&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Monitoring&lt;/li&gt;&lt;li&gt;Logging&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Configure uptime checks, alerting policies, and charts for your network services.&lt;/li&gt;&lt;li&gt;Monitor Google Cloud network resources.&lt;/li&gt;&lt;li&gt;Use VPC Flow Logs to log and analyze network traffic behavior.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 4: Network Routing and Addressing in Google Cloud&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;VPC Routing&lt;/li&gt;&lt;li&gt;IPv6&lt;/li&gt;&lt;li&gt;BYOIP&lt;/li&gt;&lt;li&gt;Cloud DNS&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Overview:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Define key routing and addressing concepts relevant to Google Cloud, including IP addresses, subnets, route tables, firewalls, BYOIP, and NATs.&lt;/li&gt;&lt;li&gt;Describe the configuration and management options for Google Cloud DNS, including private and managed zones.&lt;/li&gt;&lt;li&gt;Configure and manage route tables to control traffic flow, resolve domain names effectively, and utilize NAT rules for secure access.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 5: Private Connection Options&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Private Connection Options&lt;/li&gt;&lt;li&gt;Private Google Access&lt;/li&gt;&lt;li&gt;Private Service Connect&lt;/li&gt;&lt;li&gt;Private services access&lt;/li&gt;&lt;li&gt;Cloud NAT&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Define and differentiate various private connection options (e.g., Private Google Access, Private Services Access, Private Service Connect).&lt;/li&gt;&lt;li&gt;Explore use cases of Private Service Connect, Private Service Access, and Private Google Access.&lt;/li&gt;&lt;li&gt;Implement Private Google Access with Cloud NAT.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 6: Introduction to Network Architecture&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Cloud network architecture overview&lt;/li&gt;&lt;li&gt;Key considerations&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Describe the Google Cloud provides components that create a good network architecture, such as Cloud Interconnect, VPC Network Peering, Shared VPC, and Network Tiers.&lt;/li&gt;&lt;li&gt;Summarize key considerations for network design.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 7: Network Topologies&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Hub and spoke topology&lt;/li&gt;&lt;li&gt;Other topologies&lt;/li&gt;&lt;li&gt;Getting topology data&lt;/li&gt;&lt;li&gt;Best practices&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Explain when to use each network topology based on specific requirements.&lt;/li&gt;&lt;li&gt;Identify potential bottlenecks or security vulnerabilities in network topologies.&lt;/li&gt;&lt;li&gt;Implement a meshed topology for a resilient and scalable network architecture.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 8: Distributed Denial of Service (DDoS) Protection&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;How DDoS attacks work&lt;/li&gt;&lt;li&gt;Google Cloud mitigations&lt;/li&gt;&lt;li&gt;Types of complementary partner products&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Identify the four layers of DDoS Mitigation.&lt;/li&gt;&lt;li&gt;Identify methods Google Cloud uses to mitigate the risk of DDoS for its customers.&lt;/li&gt;&lt;li&gt;Use Google Cloud Armor to blocklist an IP address and restrict access to a global external Application Load Balancer.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 9: Controlling Access to VPC Networks&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;IAM&lt;/li&gt;&lt;li&gt;Cloud Firewall&lt;/li&gt;&lt;li&gt;Cloud IDS&lt;/li&gt;&lt;li&gt;Secure Web Proxy&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Describe how IAM policies affect VPC network access.&lt;/li&gt;&lt;li&gt;Identify the benefits of using Cloud Firewall&amp;#039;s hierarchical policies at different levels of the cloud infrastructure hierarchy.&lt;/li&gt;&lt;li&gt;Apply global and regional network firewall policies using Cloud Firewall.&lt;/li&gt;&lt;li&gt;Explain the role of Cloud IDS in protecting VPC networks from malicious activity.&lt;/li&gt;&lt;li&gt;Deploy Cloud IDS and configure its settings according to specific security needs.&lt;/li&gt;&lt;li&gt;Describe the role of Secure Web Proxy in improving network resilience and availability.&lt;/li&gt;&lt;li&gt;Describe best practices for cloud network security.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 10: Advanced Security Monitoring and Analysis&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Packet Mirroring for network traffic inspection&lt;/li&gt;&lt;li&gt;Network security best practices&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Define Packet Mirroring and explain its purpose in network monitoring and security.&lt;/li&gt;&lt;li&gt;Learn network security best practices.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 11: Hybrid Load Balancing and Traffic Management&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Hybrid load balancing&lt;/li&gt;&lt;li&gt;Traffic management&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Describe the benefits of hybrid load balancing.&lt;/li&gt;&lt;li&gt;Configure traffic management in a load balance.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 12: Caching and Optimizing Load Balancing&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Internal network load balancers as next hops&lt;/li&gt;&lt;li&gt;Cloud CDN&lt;/li&gt;&lt;li&gt;Cloud Armor&lt;/li&gt;&lt;li&gt;Load balancer optimization strategies&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Describe how to configure an internal network load balancer as a next hop.&lt;/li&gt;&lt;li&gt;Use Cloud CDN configuration to optimize content delivery performance.&lt;/li&gt;&lt;li&gt;Create a Google Cloud Armor edge security policy to protect content.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 13: Connectivity options&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Google Cloud connectivity options&lt;/li&gt;&lt;li&gt;Dedicated Interconnect&lt;/li&gt;&lt;li&gt;Partner Interconnect&lt;/li&gt;&lt;li&gt;Cross-Cloud Interconnect&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Objectives:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Describe the various connectivity options offered by Google Cloud for hybrid and multi-cloud environments, including Network Connectivity Center, Cloud VPN, Cloud Interconnect, and Cloud CDN.&lt;/li&gt;&lt;li&gt;Define and differentiate between the various Cloud Interconnect options available in Google Cloud, including Dedicated Interconnect, Partner Interconnect, and Cross-Cloud Interconnect.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 14: Cloud VPN&lt;/h4&gt;&lt;p&gt;
&lt;strong&gt;Topics:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Use case for Cloud VPN&lt;/li&gt;&lt;li&gt;HA VPN topologies&lt;/li&gt;&lt;li&gt;HA VPN over Cloud Interconnect&lt;/li&gt;&lt;li&gt;Influence best path selection&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Objectives:&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Implement high availability VPN (HA VPN) for redundancy and failover.&lt;/li&gt;&lt;li&gt;Identify the benefits and use cases for Cloud HA VPN.&lt;/li&gt;&lt;/ul&gt;</outline><objective_plain>- Configure VPC networks, subnets, and routers.
- Control administrative access to VPC objects.
- Control network access to endpoints in VPCs.
- Interconnect networks among Google Cloud projects.
- Implement network connectivity between Google Cloud projects.
- Implement load balancing.
- Configure traffic management among load balancer backend services.
- Use Cloud CDN to reduce latency.
- Optimize network spend using Network Service Tiers.
- Configure private connection options to provide access to external resources and services from internal networks.</objective_plain><essentials_plain>- Google Cloud Fundamentals: Core Infrastructure (GCF-CI) course (or equivalent experience)
- Prior understanding of the 7 layer OSI model
- Prior understanding of IPv4 addressing
- Prior experience with managing IPv4 routes</essentials_plain><audience_plain>This course is intended for the following participants:


- Network engineers and administrators who are using the Google Cloud console or are planning to do so
- Individuals who want to be exposed to software-defined networking solutions in the cloud.</audience_plain><outline_plain>Module 1: VPC Networking Fundamentals


Topics:



- VPC networks
- Multiple Network Interfaces
- Network Service Tiers
Objectives:



- Create a Compute Engine VM with multiple network interfaces.
- Use the standard tier to lower cloud networking costs.
- Use the premium tier to provide lower latency and faster access to Google Cloud resources.
Module 2: Sharing VPC Networks


Topics:



- Shared VPC
- VPC Network Peering
- Migrating a VM between networks
Objectives:



- Describe the different ways to share VPC networks that are available in Google Cloud.
- Recognize when to use Shared VPC and when to use VPC Network Peering.
- Configure peering between unrelated VPC networks.
Module 3: Network Monitoring and Logging


Topics:



- Monitoring
- Logging
Objectives:



- Configure uptime checks, alerting policies, and charts for your network services.
- Monitor Google Cloud network resources.
- Use VPC Flow Logs to log and analyze network traffic behavior.
Module 4: Network Routing and Addressing in Google Cloud


Topics:



- VPC Routing
- IPv6
- BYOIP
- Cloud DNS
Overview:



- Define key routing and addressing concepts relevant to Google Cloud, including IP addresses, subnets, route tables, firewalls, BYOIP, and NATs.
- Describe the configuration and management options for Google Cloud DNS, including private and managed zones.
- Configure and manage route tables to control traffic flow, resolve domain names effectively, and utilize NAT rules for secure access.
Module 5: Private Connection Options


Topics:



- Private Connection Options
- Private Google Access
- Private Service Connect
- Private services access
- Cloud NAT
Objectives:



- Define and differentiate various private connection options (e.g., Private Google Access, Private Services Access, Private Service Connect).
- Explore use cases of Private Service Connect, Private Service Access, and Private Google Access.
- Implement Private Google Access with Cloud NAT.
Module 6: Introduction to Network Architecture


Topics:



- Cloud network architecture overview
- Key considerations
Objectives:



- Describe the Google Cloud provides components that create a good network architecture, such as Cloud Interconnect, VPC Network Peering, Shared VPC, and Network Tiers.
- Summarize key considerations for network design.
Module 7: Network Topologies


Topics:



- Hub and spoke topology
- Other topologies
- Getting topology data
- Best practices
Objectives:



- Explain when to use each network topology based on specific requirements.
- Identify potential bottlenecks or security vulnerabilities in network topologies.
- Implement a meshed topology for a resilient and scalable network architecture.
Module 8: Distributed Denial of Service (DDoS) Protection


Topics:



- How DDoS attacks work
- Google Cloud mitigations
- Types of complementary partner products
Objectives:



- Identify the four layers of DDoS Mitigation.
- Identify methods Google Cloud uses to mitigate the risk of DDoS for its customers.
- Use Google Cloud Armor to blocklist an IP address and restrict access to a global external Application Load Balancer.
Module 9: Controlling Access to VPC Networks


Topics:



- IAM
- Cloud Firewall
- Cloud IDS
- Secure Web Proxy
Objectives:



- Describe how IAM policies affect VPC network access.
- Identify the benefits of using Cloud Firewall's hierarchical policies at different levels of the cloud infrastructure hierarchy.
- Apply global and regional network firewall policies using Cloud Firewall.
- Explain the role of Cloud IDS in protecting VPC networks from malicious activity.
- Deploy Cloud IDS and configure its settings according to specific security needs.
- Describe the role of Secure Web Proxy in improving network resilience and availability.
- Describe best practices for cloud network security.
Module 10: Advanced Security Monitoring and Analysis


Topics:



- Packet Mirroring for network traffic inspection
- Network security best practices
Objectives:



- Define Packet Mirroring and explain its purpose in network monitoring and security.
- Learn network security best practices.
Module 11: Hybrid Load Balancing and Traffic Management


Topics:



- Hybrid load balancing
- Traffic management
Objectives:



- Describe the benefits of hybrid load balancing.
- Configure traffic management in a load balance.
Module 12: Caching and Optimizing Load Balancing


Topics:



- Internal network load balancers as next hops
- Cloud CDN
- Cloud Armor
- Load balancer optimization strategies
Objectives:



- Describe how to configure an internal network load balancer as a next hop.
- Use Cloud CDN configuration to optimize content delivery performance.
- Create a Google Cloud Armor edge security policy to protect content.
Module 13: Connectivity options


Topics:



- Google Cloud connectivity options
- Dedicated Interconnect
- Partner Interconnect
- Cross-Cloud Interconnect
Objectives:



- Describe the various connectivity options offered by Google Cloud for hybrid and multi-cloud environments, including Network Connectivity Center, Cloud VPN, Cloud Interconnect, and Cloud CDN.
- Define and differentiate between the various Cloud Interconnect options available in Google Cloud, including Dedicated Interconnect, Partner Interconnect, and Cross-Cloud Interconnect.
Module 14: Cloud VPN


Topics:



- Use case for Cloud VPN
- HA VPN topologies
- HA VPN over Cloud Interconnect
- Influence best path selection
Objectives:


- Implement high availability VPN (HA VPN) for redundancy and failover.
- Identify the benefits and use cases for Cloud HA VPN.</outline_plain><duration unit="d" days="3">3 days</duration><pricelist><price country="IN" currency="USD">695.00</price><price country="CH" currency="CHF">1690.00</price><price country="SG" currency="USD">1495.00</price><price country="IL" currency="ILS">4510.00</price><price country="BE" currency="EUR">1495.00</price><price country="NL" currency="EUR">1495.00</price><price country="IT" currency="EUR">1950.00</price><price country="US" currency="USD">1995.00</price><price country="SI" currency="EUR">1950.00</price><price country="DE" currency="EUR">1950.00</price><price country="AT" currency="EUR">1950.00</price><price country="SE" currency="EUR">1950.00</price><price country="PL" currency="PLN">5200.00</price><price country="GB" currency="GBP">1980.00</price><price country="CA" currency="CAD">2755.00</price><price country="FR" currency="EUR">2450.00</price></pricelist><miles/></course>