PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #46
A customer needs to rely on their existing user directory with the requirements of native authentication against it when developing for Google Cloud Platform (GCP). They want to leverage their…
The correct answer is B. Configure Cloud Identity as a SAML 2.0 Service Provider, using the customer's User Directory as. A is not correct because client wants to continue using their existing directory. B is correct because it lets client use their current user directory as source of truth and to be authenticated against while using Cloud identity as their SAML broker. C is not correct because it…
Question
Options
- AProvision users into Cloud Identity using Just-in-Time SAML 2.0 user provisioning with the
- BConfigure Cloud Identity as a SAML 2.0 Service Provider, using the customer's User Directory as
- CConfigure and enforce 2-Step Verification in Cloud Identity for all Super Admins.
- DConfigure a third-party IdP (Octa or Ping Federate) to manage authentication.
How the community answered
(25 responses)- A4% (1)
- B84% (21)
- C8% (2)
- D4% (1)
Explanation
A is not correct because client wants to continue using their existing directory. B is correct because it lets client use their current user directory as source of truth and to be authenticated against while using Cloud identity as their SAML broker. C is not correct because it adds a protection to super admin account but doesn't address the use D is not correct because it proposes a non-native solution and doesn't address the use case. https://cloud.google.com/blog/products/identity-security/using-your-existing-identity-management- system-with-google-cloud-platform https://support.google.com/a/answer/60224
Topics
Community Discussion
No community discussion yet for this question.