Google Professional Cloud DevOps Engineer Exam - Topic 2 Question 104 Discussion
Your company operates in a highly regulated domain. Your security team requires that only trusted container images can be deployed to Google Kubernetes Engine (GKE). You need to implement a solution that meets the requirements of the security team, while minimizing management overhead. What should you do?
D) Configure Binary Authorization in your GKE clusters to enforce deploy-time security policies
A) Grant the roles/artifactregistry. writer role to the Cloud Build service account. Confirm that no employee has Artifact Registry write permission.
B) Use Cloud Run to write and deploy a custom validator Enable an Eventarc trigger to perform validations when new images are uploaded.
C) Configure Kritis to run in your GKE clusters to enforce deploy-time security policies.
Mireya
4 days agoFrancesco
9 days agoRhea
14 days agoAshton
19 days agoLorita
24 days agoFletcher
30 days agoCristina
1 month agoKyoko
1 month agoJohnetta
2 months agoSheridan
2 months agoMaile
2 months agoPedro
2 months agoMoon
2 months agoNaomi
2 months agoMarlon
4 months agoCortney
4 months agoHorace
5 months agoJanna
5 months agoJunita
5 months agoLuis
5 months ago