Soru

Zorluk: KolayConfiguring Storage Access Controls and Uniform Bucket-Level Access

An administrator needs to ensure that access to all objects in a Google Cloud Storage bucket is managed strictly through Cloud IAM permissions, completely disabling individual per-object Access Control Lists (ACLs). Which configuration should the administrator apply to the bucket?

  1. Enable Uniform Bucket-Level Access on the bucket.Cevap
  2. B
    Apply fine-grained per-object Access Control Lists (ACLs) to each stored object.
  3. C
    Revoke all IAM permissions inherited from the parent Google Cloud project.
  4. D
    Assign the primitive Owner role to individual users directly on specific objects.

Cevap

Enable Uniform Bucket-Level Access on the bucket.
Enabling Uniform Bucket-Level Access disables legacy object-level Access Control Lists (ACLs) for the bucket, ensuring that all access to storage objects is evaluated solely through Cloud IAM policies.

Adım Adım Çözüm

1
Identify the goal
Unify permissions under Cloud IAM and disable per-object ACLs for consistent bucket security.
The requirement specifies enforcing bucket-wide IAM controls exclusively.
2
Evaluate Google Cloud Storage access control options
Enabling Uniform Bucket-Level Access (UBLA) turns off ACLs and relies solely on Cloud IAM permissions.
UBLA simplifies access management and ensures uniform security across all bucket objects.

Anahtar Kavram

Uniform Bucket-Level Access (UBLA)
Tahmini Süre:45s
Bu soruyu puanla