Professional Cloud ArchitectManage and provision solution infrastructureMedium

A software development company is building a new CI/CD pipeline on Google Cloud. Their build agents, running on Compute Engine VMs, need to securely pull Docker images from a private registry and store build artifacts. They require a fully managed, private repository that supports Docker images and other package formats, with strong integration with Google Cloud IAM for access control. Which Google Cloud service should they use?

  1. AContainer Registry
  2. BSource Repositories
  3. CArtifact Registry
  4. DCloud Storage
Show answer & explanation

Correct answer: C. Artifact Registry

Artifact Registry is Google Cloud's fully managed universal package manager, supporting Docker images, Maven, npm, and other formats. It provides a private registry, strong IAM integration, and is the recommended successor to Container Registry for new projects.

Why the other options are wrong

  • A. Container Registry is primarily for Docker images, but Artifact Registry is the newer, more comprehensive solution that supports more formats and is recommended for new projects.
  • B. Source Repositories is a managed Git repository service for source code, not for compiled artifacts or Docker images.
  • D. Cloud Storage is object storage and can store artifacts, but it's not a dedicated, managed package/container registry with native format support and versioning.

Artifact Registry

A fully managed universal package manager on Google Cloud, designed to store, manage, and secure build artifacts and Docker images.

  • Supports multiple package formats (Docker, Maven, npm, Python).
  • Offers private repositories.
  • Integrates with Google Cloud IAM for granular access control.

Memory trick: Artifact Registry stores all build art-i-facts.

More Manage and provision solution infrastructure questions