You need to create a GKE cluster in an existing VPC that is accessible from on-premises. You must meet the following requirements: - IP ranges for pods and services must be as small as possible. - The nodes and the master must not be reachable from the internet. - You must be able to use kubectl commands from on-premises subnets to manage the cluster. How should you create the GKE cluster?