New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Google Professional Cloud Database Engineer Exam - Topic 10 Question 64 Discussion

Actual exam question for Google's Professional Cloud Database Engineer exam
Question #: 64
Topic #: 10
[All Professional Cloud Database Engineer Questions]

You are deploying a new Cloud SQL instance on Google Cloud using the Cloud SQL Auth proxy. You have identified snippets of application code that need to access the new Cloud SQL instance. The snippets reside and execute on an application server running on a Compute Engine machine. You want to follow Google-recommended practices to set up Identity and Access Management (IAM) as quickly and securely as possible. What should you do?

Show Suggested Answer Hide Answer
Suggested Answer: C

https://cloud.google.com/sql/docs/mysql/sql-proxy#using-a-service-account


Contribute your Thoughts:

0/2000 characters
Adria
7 hours ago
I disagree, A seems easier to manage.
upvoted 0 times
...
Hannah
5 days ago
B is the way to go! Dedicated accounts are more secure.
upvoted 0 times
...
Agustin
11 days ago
I'd go with C. Service accounts are the way of the future, my friend.
upvoted 0 times
...
Allene
16 days ago
B) and C) are the way to go. Gotta keep that security tight, you know?
upvoted 0 times
...
Karon
21 days ago
C) For the application server, set up a service account. This is the recommended practice by Google.
upvoted 0 times
...
Sabrina
26 days ago
B) For each application code, set up a dedicated user account. This ensures better security and accountability.
upvoted 0 times
...
Florinda
1 month ago
I’m a bit confused about whether a common shared user account is ever recommended. I thought we should avoid that for security reasons.
upvoted 0 times
...
Vanesa
1 month ago
This question seems similar to one we practiced about IAM roles. I feel like using a common shared user account could lead to security risks.
upvoted 0 times
...
Gracie
1 month ago
I’m not entirely sure, but I think setting up a service account for the application server might be the best practice.
upvoted 0 times
...
Mollie
2 months ago
I'm not totally sure about the shared user account options. I'll need to double-check the security implications of those approaches.
upvoted 0 times
...
Shenika
2 months ago
This seems straightforward. I'd go with option C and set up a service account for the application server to access the Cloud SQL instance.
upvoted 0 times
...
Maybelle
2 months ago
Okay, I think I've got a strategy here. I'll focus on setting up the IAM securely, likely using a service account for the application server.
upvoted 0 times
...
Tandra
2 months ago
I remember we discussed the importance of using dedicated user accounts for different applications to enhance security.
upvoted 0 times
...
Sheridan
3 months ago
Haha, a common shared user account? What is this, the Stone Age?
upvoted 0 times
...
Jaclyn
3 months ago
Hmm, I'm a bit confused on the best way to handle the IAM for this Cloud SQL instance. I'll need to review the Google-recommended practices.
upvoted 0 times
...
Carmela
3 months ago
This looks like a tricky IAM setup question. I'll need to think through the different options carefully.
upvoted 0 times
Lanie
2 months ago
I agree, a service account seems more secure for the application server.
upvoted 0 times
...
Ramonita
2 months ago
This is definitely tricky! I think a service account might be the best option.
upvoted 0 times
...
Octavio
3 months ago
But what about dedicated user accounts? They could work too, right?
upvoted 0 times
...
...

Save Cancel