You want to limit the images that can be used as the source for boot disks. These images will be stored in a dedicated project.
What should you do?
A . Use the Organization Policy Service to create a compute.trustedimageProjects constraint on the organization level. List the trusted project as the whitelist in an allow operation.
B . Use the Organization Policy Service to create a compute.trustedimageProjects constraint on the organization level. List the trusted projects as the exceptions in a deny operation.
C . In Resource Manager, edit the project permissions for the trusted project. Add the organization as member with the role: Compute Image User.
D . In Resource Manager, edit the organization permissions. Add the project ID as member with the role: Compute Image User.
Answer: A
Explanation:
https://cloud.google.com/compute/docs/images/restricting-image-access#trusted_images
Reference: https://cloud.google.com/compute/docs/images/restricting-image-access
Latest Professional Cloud Security Engineer Dumps Valid Version with 93 Q&As
Latest And Valid Q&A | Instant Download | Once Fail, Full Refund