Restrict resource deployments to only approved Google Cloud regions. What do you configure?
Choose an answer
Tap an option to check your answer.
Correct answer: Configure an Organization Policy that constrains resource locations..
Why this is the answer
The correct answer is configuring an Organization Policy that constrains resource locations. Organization Policies are Google Cloud's centralized control mechanism for programmatic restriction over your organization's cloud resources. The gcp.resourceLocations constraint specifically allows you to define a list of allowed or denied regions and multi-regions for resource creation. This is the most effective and preventative way to enforce regional compliance. IAM conditions limit who can perform actions, not where resources can be deployed. Setting regional resource quotas to 0 is a reactive measure and doesn't prevent deployment attempts; it just prevents successful creation if the quota is hit. Cloud Monitoring alerts are also reactive, notifying you after a non-compliant resource has been created, requiring manual intervention to disable it.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed