exam questions

Exam Professional Cloud Architect All Questions

View all questions & answers for the Professional Cloud Architect exam

Exam Professional Cloud Architect topic 8 question 3 discussion

Actual exam question from Google's Professional Cloud Architect
Question #: 3
Topic #: 8
[All Professional Cloud Architect Questions]

Your development team has created a structured API to retrieve vehicle data. They want to allow third parties to develop tools for dealerships that use this vehicle event data. You want to support delegated authorization against this data.
What should you do?

  • A. Build or leverage an OAuth-compatible access control system
  • B. Build SAML 2.0 SSO compatibility into your authentication system
  • C. Restrict data access based on the source IP address of the partner systems
  • D. Create secondary credentials for each dealer that can be given to the trusted third party
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
ravisar
Highly Voted 1 year, 5 months ago
SAML is an authentication system. OAuth is an authorization system. Both can be used with SSO (Single sign on). SAML is for users and OAuth is more for applications. Answer A
upvoted 46 times
huyhoang8344
8 months ago
SAML can do both authentication and authorization If I am not mistaken But agree A should be the answer
upvoted 2 times
...
...
AD2AD4
Highly Voted 2 years, 11 months ago
Final Decision to go with Option A. Refer - https://cloud.google.com/docs/authentication Good Read - https://cloud.google.com/blog/products/identity-security/identity-and-authentication-the-google-cloud-way
upvoted 26 times
...
megumin
Most Recent 5 months, 4 weeks ago
Selected Answer: A
ok for A
upvoted 1 times
...
Nirca
7 months, 2 weeks ago
Selected Answer: A
Delegate application authorization with OAuth2
upvoted 1 times
...
AzureDP900
10 months ago
OAuth Authorization is right. A is right!
upvoted 2 times
...
pakilodi
1 year, 4 months ago
Selected Answer: A
A is correct
upvoted 2 times
...
joe2211
1 year, 5 months ago
Selected Answer: A
vote A
upvoted 2 times
...
MaxNRG
1 year, 6 months ago
A – O-Auth 2 access to system (clients would use APIs) https://cloud.google.com/docs/authentication/end-user B – SAML 2.0 is redundant, not in requirements.
upvoted 1 times
...
kopper2019
1 year, 9 months ago
hey guys new Qs posted as of July 12th, 2021, All 21 new Qs in Question #152
upvoted 3 times
...
victory108
1 year, 9 months ago
A. Build or leverage an OAuth-compatible access control system
upvoted 1 times
...
MamthaSJ
1 year, 9 months ago
Answer is A
upvoted 2 times
...
wzh5831
2 years ago
just query why there is not option for service account...
upvoted 1 times
poseidon24
1 year, 9 months ago
Because OAuth 2.0 already take in count such flows (client credentials, that is service-to-service communication, meaning service accounts).
upvoted 1 times
...
...
Ausias18
2 years, 1 month ago
Answer is A
upvoted 1 times
...
nitinz
2 years, 2 months ago
A is good, they need auth not aunthentication.
upvoted 2 times
...
ahmedemad3
2 years, 2 months ago
ANS: A CHECK THIS LINK : https://developers.google.com/identity/protocols/oauth2/service-account
upvoted 4 times
...
bnlcnd
2 years, 3 months ago
SAML is mostly for Single Sign On. O-Auth is better for delegation.
upvoted 4 times
...
AshokC
2 years, 7 months ago
A is correct
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago