Professional Cloud ArchitectManage and provision solution infrastructureEasy

A software development company is building a new microservices application on Google Kubernetes Engine (GKE). They need a private Docker registry to store their container images securely and reliably. The registry must integrate with their CI/CD pipeline, allow fine-grained access control, and be highly available across regions. Which Google Cloud service should they use?

  1. AContainer Registry
  2. BCloud Storage with versioning
  3. CArtifact Registry
  4. DCloud Source Repositories
Show answer & explanation

Correct answer: C. Artifact Registry

Artifact Registry is Google Cloud's universal package manager, fully supporting Docker images and other artifact types. It provides a highly available, secure, and fully managed private Docker registry that integrates with CI/CD and offers fine-grained access control, making it ideal for GKE applications.

Why the other options are wrong

  • A. Container Registry was Google Cloud's previous Docker registry service. While functional, it has been superseded by Artifact Registry, which offers broader artifact support and enhanced features. Artifact Registry is the current best practice.
  • B. Cloud Storage is an object storage service and does not function as a Docker registry, lacking features like image manifest handling, tagging, and native Docker API support.
  • D. Cloud Source Repositories is a private Git repository for source code management. It is not designed for storing compiled container images.

Artifact Registry

Artifact Registry is a fully managed, universal package manager that supports storing, managing, and securing various artifact types, including Docker images, Maven, npm, Python packages, and more. It is designed for enterprise-grade use with fine-grained access control and integration with CI/CD.

  • Fully managed and universal package manager
  • Supports Docker images and other artifact types
  • Provides private, secure, and highly available registries
  • Integrates with CI/CD pipelines
  • Offers fine-grained IAM-based access control
  • Supersedes Container Registry

Memory trick: Artifact Registry holds all your code artifacts securely.

More Manage and provision solution infrastructure questions