
Answer-first summary for fast verification
Answer: Identify inherited Identity and Access Management (IAM) roles on projects to be migrated., Remove the specific migration projects from any VPC Service Controls perimeters and bridges.
Based on the community discussion and Google Cloud documentation, the necessary preparation steps are C and E. Option C (Identify inherited IAM roles) is crucial because projects lose inherited roles when moved to a new organization, which can cause access issues if not addressed beforehand. Option E (Remove projects from VPC Service Controls perimeters) is mandatory as projects cannot be migrated while protected by VPC Service Controls, and this process requires time to complete. Option A is incorrect because removing all project-level custom IAM roles is unnecessary and could disrupt services; instead, organization-level custom roles should be handled. Option B is not required as policy inheritance changes automatically after migration. Option D is a recommended best practice for managing policy risks but not strictly necessary for migration, as projects can be moved without creating new folders.
Author: LeetQuiz Editorial Team
Ultimate access to all questions.
Before migrating Google Cloud projects from two sold divisions to a new organization node, which two preparation steps are necessary?
A
Remove all project-level custom Identity and Access Management (IAM) roles.
B
Disallow inheritance of organization policies.
C
Identify inherited Identity and Access Management (IAM) roles on projects to be migrated.
D
Create a new folder for all projects to be migrated.
E
Remove the specific migration projects from any VPC Service Controls perimeters and bridges.
No comments yet.