Your organization wants to allow a junior administrator to perform basic operational tasks on Compute Engine virtual machines, such as starting, stopping, and resetting instances, without granting full project administration rights. Following Google Cloud best practices for security and access control, which predefined IAM role should you assign to the administrator?
- Compute Instance Admin (v1)Cevap
- BOwner
- CCompute Network Admin
- DMonitoring Metric Writer
Cevap
Assign the Compute Instance Admin (v1) predefined role to grant instance management capabilities without excessive administrative privileges.
The Compute Instance Admin (v1) role provides full control over Compute Engine instances, including permissions to create, start, stop, and restart VMs, while restricting control to instance resources specifically.
Adım Adım Çözüm
Anahtar Kavram
Managing Compute Engine IAM Roles and Access Control