Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam Professional Cloud Security Engineer All Questions

View all questions & answers for the Professional Cloud Security Engineer exam

Exam Professional Cloud Security Engineer topic 1 question 105 discussion

Actual exam question from Google's Professional Cloud Security Engineer
Question #: 105
Topic #: 1
[All Professional Cloud Security Engineer Questions]

You want to use the gcloud command-line tool to authenticate using a third-party single sign-on (SSO) SAML identity provider. Which options are necessary to ensure that authentication is supported by the third-party identity provider (IdP)? (Choose two.)

  • A. SSO SAML as a third-party IdP
  • B. Identity Platform
  • C. OpenID Connect
  • D. Identity-Aware Proxy
  • E. Cloud Identity
Show Suggested Answer Hide Answer
Suggested Answer: AE 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
ExamQnA
Highly Voted 2 years, 6 months ago
Selected Answer: AE
Third-party identity providers If you have a third-party IdP, you can still configure SSO for third-party apps in the Cloud Identity catalog. User authentication occurs in the third-party IdP, and Cloud Identity manages the cloud apps. To use Cloud Identity for SSO, your users need Cloud Identity accounts. They sign in through your third-party IdP or using a password on their Cloud Identity accounts. https://cloud.google.com/identity/solutions/enable-sso
upvoted 22 times
AzureDP900
2 years ago
A, E is right
upvoted 5 times
...
...
piyush_1982
Highly Voted 2 years, 4 months ago
Selected Answer: AC
I think the correct answer is A and C. The questions asks about what is required with third-party IdP to authenticate the gcloud commands. So the gcloud command requests goes to GCP. Since GCP is integrated with Third-party IdP for authentication gcloud command needs to be authenticated with third-party IdP. This can be achieved if ThridPaty IdP supports SAML and OIDC protocols .
upvoted 16 times
...
Mr_MIXER007
Most Recent 2 months, 3 weeks ago
Selected Answer: AE
Selected Answer: AE
upvoted 1 times
...
3d9563b
4 months ago
Selected Answer: AE
SSO SAML as a third-party IdP: This option ensures that the authentication mechanism used is SAML, which is required for third-party IdP integration. Cloud Identity: This provides the underlying infrastructure to integrate and manage identities with third-party SAML IdPs, enabling SSO authentication.
upvoted 1 times
...
dija123
8 months, 3 weeks ago
Selected Answer: CE
C. OpenID Connect E. Cloud Identity A. SSO SAML as a third-party IdP: While it accurately describes the desired authentication but It represents the outcome we want to achieve, not the solution itself.
upvoted 2 times
oezgan
8 months, 1 week ago
Gemini says: While SAML is a common protocol for SSO, it's not directly usable by gcloud for authentication. So it cant be A.
upvoted 2 times
...
...
mjcts
9 months, 3 weeks ago
Selected Answer: AE
OpenID is a different SSO protocol. We need SAML.
upvoted 2 times
...
Andras2k
10 months, 3 weeks ago
Selected Answer: AE
It specifically requires the SAML protocol. OpenID is another SSO protocol.
upvoted 2 times
...
ymkk
1 year, 3 months ago
Selected Answer: AE
Options B, C, and D are not directly related to setting up authentication using a third-party SSO SAML identity provider. Identity Platform (option B) is a service for authentication and user management, OpenID Connect (option C) is another authentication protocol, and Identity-Aware Proxy (option D) is a service for managing access to Google Cloud resources but is not specifically related to SSO SAML authentication with a third-party IdP.
upvoted 2 times
...
pfilourenco
1 year, 3 months ago
Selected Answer: AE
AE is the correct
upvoted 2 times
...
[Removed]
1 year, 4 months ago
Selected Answer: AE
"A,E" The requirement is for an SSO - SAML solution with a third party IDP. A- This is correct because it provides the right type of 3rd party partners. B - Not sufficient because not any IDP will suffice. Must be able to support SAML and SSO. C- OIDC is an option by not critical or a hard requirement. The questions asks about what is "..necessary..". D- IAP is not related to authentication mechanism but rather authorization. This is not the use case for it. E- This is needed on the receiving end in GCP to collaborate with 3rd party IDP (that has SAML SSO) https://cloud.google.com/identity/solutions/enable-sso
upvoted 1 times
...
keymson
1 year, 7 months ago
OpenID Connect has to be there. so A and C
upvoted 1 times
testgcptestgcp
1 year, 6 months ago
Cloud Identity does not have to be there? Why?
upvoted 2 times
...
...
alleinallein
1 year, 7 months ago
Selected Answer: AC
Open ID seems to be necessary
upvoted 3 times
...
bruh_1
1 year, 7 months ago
A. SSO SAML as a third-party IdP: This option is necessary because it specifies that you want to use SAML-based SSO with a third-party IdP. C. OpenID Connect: This option is necessary to ensure that the third-party IdP supports OpenID Connect, which is a protocol for authentication and authorization. Therefore, the correct options are A and C.
upvoted 3 times
...
TNT87
1 year, 8 months ago
Selected Answer: AC
https://cloud.google.com/certificate-authority-service/docs/tutorials/using-3pi-with-reflection#set-up-wip https://cloud.google.com/identity/solutions/enable-sso#solutions Nothing supports E to satisfy the requirements othe question
upvoted 2 times
...
Sammydp202020
1 year, 9 months ago
Selected Answer: AE
AE https://cloud.google.com/identity/solutions/enable-sso Third-party identity providers If you have a third-party IdP, you can still configure SSO for third-party apps in the Cloud Identity catalog. User authentication occurs in the third-party IdP, and Cloud Identity manages the cloud apps. To use Cloud Identity for SSO, your users need Cloud Identity accounts. They sign in through your third-party IdP or using a password on their Cloud Identity accounts.
upvoted 2 times
...
Littleivy
2 years ago
Selected Answer: AC
answer is A and C.
upvoted 2 times
...
Littleivy
2 years ago
Selected Answer: AC
To provide users with SSO-based access to selected cloud apps, Cloud Identity as your IdP supports the OpenID Connect (OIDC) and Security Assertion Markup Language 2.0 (SAML) protocols. https://cloud.google.com/identity/solutions/enable-sso
upvoted 4 times
gcpengineer
1 year, 6 months ago
which means A E
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...