Question 100 of 169
Single answerYou have a Cloud Storage bucket in Google Cloud project XYZ. The bucket contains sensitive data. You need to design a solution to ensure that only instances belonging to VPCs under project XYZ can access the data stored in this Cloud Storage bucket. What should you do?
AConfigure Private Google Access to privately access the Cloud Storage service using private IP addresses.
✓BConfigure a VPC Service Controls perimeter around project XYZ, and include storage.googleapis.com as a restricted service in the service perimeter.
CConfigure Cloud Storage with projectPrivate Access Control List (ACL) that gives permission to the project team based on their roles.
DConfigure Private Service Connect to privately access Cloud Storage from all VPCs under project XYZ.
✓
Correct Answer: B
Configure a VPC Service Controls perimeter around project XYZ, and include storage.googleapis.com as a restricted service in the service perimeter.
▥
Explanation
The correct answer is highlighted above. Review the wording carefully, then use the next question to continue building your understanding of Google certification topics.