Professional Cloud ArchitectManage and provision solution infrastructureMedium
A software development company is building a new CI/CD pipeline on Google Cloud. Their build agents, running on Compute Engine VMs, need to securely pull Docker images from a private registry and store build artifacts. They require a fully managed, private repository that supports Docker images and other package formats, with strong integration with Google Cloud IAM for access control. Which Google Cloud service should they use?
- AContainer Registry
- BSource Repositories
- CArtifact Registry
- DCloud Storage
Show answer & explanationAnswer & explanation
Correct answer: C. Artifact Registry
Artifact Registry is Google Cloud's fully managed universal package manager, supporting Docker images, Maven, npm, and other formats. It provides a private registry, strong IAM integration, and is the recommended successor to Container Registry for new projects.
Why the other options are wrong
- A. Container Registry is primarily for Docker images, but Artifact Registry is the newer, more comprehensive solution that supports more formats and is recommended for new projects.
- B. Source Repositories is a managed Git repository service for source code, not for compiled artifacts or Docker images.
- D. Cloud Storage is object storage and can store artifacts, but it's not a dedicated, managed package/container registry with native format support and versioning.
Artifact Registry
A fully managed universal package manager on Google Cloud, designed to store, manage, and secure build artifacts and Docker images.
- Supports multiple package formats (Docker, Maven, npm, Python).
- Offers private repositories.
- Integrates with Google Cloud IAM for granular access control.
Memory trick: Artifact Registry stores all build art-i-facts.