ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 26 - Associate Cloud Engineer discussion

Report
Export

You need to set up permissions for a set of Compute Engine instances to enable them to write data into a particular Cloud Storage bucket. You want to follow Google-recommended practices. What should you do?

A.
Create a service account with an access scope. Use the access scope 'https://www.googleapis.com/auth/devstorage.write_only'.
Answers
A.
Create a service account with an access scope. Use the access scope 'https://www.googleapis.com/auth/devstorage.write_only'.
B.
Create a service account with an access scope. Use the access scope 'https://www.googleapis.com/auth/cloud-platform'.
Answers
B.
Create a service account with an access scope. Use the access scope 'https://www.googleapis.com/auth/cloud-platform'.
C.
Create a service account and add it to the IAM role 'storage.objectCreator' for that bucket.
Answers
C.
Create a service account and add it to the IAM role 'storage.objectCreator' for that bucket.
D.
Create a service account and add it to the IAM role 'storage.objectAdmin' for that bucket.
Answers
D.
Create a service account and add it to the IAM role 'storage.objectAdmin' for that bucket.
Suggested answer: C

Explanation:

https://cloud.google.com/iam/docs/understanding-service-accounts#using_service_accounts_with_compute_engine

https://cloud.google.com/storage/docs/access-control/iam-roles

asked 18/09/2024
Tebogo Maphafo
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first