Topic 1 Question 104
You have a Cloud Storage bucket in Google Cloud project XYZ. The bucket contains sensitive data. You need to design a solution to ensure that only instances belonging to VPCs under project XYZ can access the data stored in this Cloud Storage bucket. What should you do?
Configure Private Google Access to privately access the Cloud Storage service using private IP addresses.
Configure a VPC Service Controls perimeter around project XYZ, and include storage.googleapis.com as a restricted service in the service perimeter.
Configure Cloud Storage with projectPrivate Access Control List (ACL) that gives permission to the project team based on their roles.
Configure Private Service Connect to privately access Cloud Storage from all VPCs under project XYZ.
ユーザの投票
コメント(6)
- 正解だと思う選択肢: B👍 4ccieman20162022/12/01
I also vote for B, the others dont make sense
👍 3playpacman2022/12/01- 正解だと思う選択肢: B
Agree on B. Typical use case of VPC Service Controls: https://cloud.google.com/vpc-service-controls/docs/overview
👍 3al_zo2022/12/02
シャッフルモード