Practice Test 3 | Google Cloud Certified Associate Cloud Engineer | Dumps | Mock Test
You company has uploaded some business critical documents to Cloud Storage and your project manager wants you to restrict access to the objects by using ACLs. Which of the following permission would allow you to update the object ACLs?
A. storage.objects.update
B. storage.objects.setIamPolicy
C. storage.objects.create
D. storage.objects.getIamPolicy
Explanation:
Answer B
B is correct: As per google docs, storage.objects.setIamPolicy allowss user to update object ACLs.
A is incorrect: Update object metadata, excluding ACLs
C is incorrect: Add new objects to the bucket
D is incorrect: Read object ACLs, returned as IAM policies
Link:
https://cloud.google.com/storage/docs/access-control/iam-permissions
Comments are closed, but trackbacks and pingbacks are open.