
Explanation:
A is incorrect because using service account credentials directly in the on-premises application can expose sensitive information. B is correct as creating a key file for the service account with appropriate permissions via gcloud is the secure and recommended method for external authentication. C is incorrect because setting up a direct interconnect does not address the need for authentication credentials to access AutoML. D is incorrect as user accounts are not suitable for server-to-server communications. For more details, refer to Creating and managing service account keys and Dedicated Interconnect overview.
Your multiplayer 3D game, hosted in your own data center, is integrating a new player performance analytics feature utilizing Google Cloud Platform (GCP) AutoML. You've set up a service account with the necessary AutoML access. How should your on-premise analytics service authenticate with GCP APIs to use AutoML?
A
Utilize service account credentials directly within your on-premises application.
B
Generate a key file for the service account with the required permissions using gcloud.
C
Establish a direct interconnect between your data center and Google Cloud Platform with a vendor's help to facilitate authentication for your on-premises applications.
D
Assign a user account similar permissions to the service account in the IAM & admin console and use this account for data center authentication.
No comments yet.