Ensure Access & Identity in Google Cloud
Fundamental 8 Langkah 1 hari 44 Kredit
Earn a skill badge by completing the Ensure Access & Identity in Google Cloud quest, where you will learn about many fundamental features of cloud security, including how to: 1. Recognize and assign roles and users using Identity and Access Management (IAM). 2. Assign predefined roles and create custom roles. 3. Create and manage service accounts. 4. Securely enable private connectivity between resources in multiple virtual private clouds (VPCs). 5. Restrict application access based on authentication using Identity-Aware Proxy. 6. Set up a secure Cloud Storage bucket and view related audit logs. 7. Manage keys and encrypted data using Key Management Service. 8. Create a private Kubernetes cluster where nodes are not publicly accessible.
A skill badge is an exclusive digital badge issued by Google Cloud in recognition of your proficiency with Google Cloud products and services and tests your ability to apply your knowledge in an interactive hands-on environment. Complete the skill badge quest, and final assessment challenge lab, to receive a digital badge that you can share with your network.
Prasyarat:Prior to enrolling in this skill badge quest, it is recommended that you complete the the following quests:
Cloud IAM provides the right tools to manage resource permissions with minimum fuss and high automation. You don't directly grant users permissions. Instead, you grant them roles, which bundle one or more permissions. This allows you to map job functions within your company to groups and roles.
In this hands-on lab, you will learn how to create and manage Service Accounts
Google Cloud Platform (GCP) Virtual Private Cloud (VPC) Network Peering allows private connectivity across two VPC networks regardless of whether or not they belong to the same project or the same organization.
Learn how to restrict access selected authenticated users with Identity-Aware Proxy without special programming. Discover how to retrieve user identity information from IAP.
Dalam lab ini, Anda akan berlatih menggunakan beberapa fitur lanjutan dari Google Cloud Security and Privacy API, termasuk menyiapkan bucket Cloud Storage yang aman, mengelola kunci dan data terenkripsi menggunakan Key Management Storage, dan melihat log audit Cloud Storage.
Hands-on lab for creating a private cluster in the cloud environment. In a private cluster, nodes do not have public IP addresses, so your workloads run in an environment that is isolated from the Internet. Prerequisites: Experience with Kubernetes Clusters, and CIDR-range IP address.