Topic 1 Question 37
A company allows every employee to use Google Cloud Platform. Each department has a Google Group, with all department members as group members. If a department member creates a new project, all members of that department should automatically have read-only access to all new project resources. Members of any other department should not have access to the project. You need to configure this behavior. What should you do to meet these requirements?
Create a Folder per department under the Organization. For each department's Folder, assign the Project Viewer role to the Google Group related to that department.
Create a Folder per department under the Organization. For each department's Folder, assign the Project Browser role to the Google Group related to that department.
Create a Project per department under the Organization. For each department's Project, assign the Project Viewer role to the Google Group related to that department.
Create a Project per department under the Organization. For each department's Project, assign the Project Browser role to the Google Group related to that department.
ユーザの投票
コメント(16)
Shouldn't it be A?
Project Browser has least permissions comparing to Project Viewer. The question is about have read-access to all new project resources.
roles/browser - Read access to browse the hierarchy for a project, including the folder, organization, and IAM policy. This role doesn't include permission to view resources in the project.
https://cloud.google.com/iam/docs/understanding-roles#project-roles
👍 20ownez2020/09/21It's A , browser is : Read access to browse the hierarchy for a project, including the folder, organization, and IAM policy. This role doesn't include permission to view resources in the project. https://cloud.google.com/iam/docs/understanding-roles#project-roles
👍 3syllox2021/05/04Ans - A
👍 2[Removed]2020/10/30
シャッフルモード