Examtopics

Professional Cloud Security Engineer
  • Topic 1 Question 197

    You run applications on Cloud Run. You already enabled container analysis for vulnerability scanning. However, you are concerned about the lack of control on the applications that are deployed. You must ensure that only trusted container images are deployed on Cloud Run.

    What should you do?

    2 つ選択
    • Enable Binary Authorization on the existing Cloud Run service.

    • Set the organization policy constraint constraints/run.allowedBinaryAuthorizationPolicies to the list or allowed Binary Authorization policy names.

    • Enable Binary Authorization on the existing Kubernetes cluster.

    • Use Cloud Run breakglass to deploy an image that meets the Binary Authorization policy by default.

    • Set the organization policy constraint constraints/compute.trustedImageProjects to the list of projects that contain the trusted container images.


    シャッフルモード