Courseiva
mediumDrag & Drop

PDE Practice Question: Drag and drop the steps to set up Cloud IAP…

Drag and drop the steps to set up Cloud IAP (Identity-Aware Proxy) for an App Engine app into the correct order.

Drag or tap steps into the slots.

Steps
Order
1Step 1
2Step 2
3Step 3
4Step 4
5Step 5

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Enable the Identity-Aware Proxy API, configure the OAuth consent screen, create an OAuth 2.0 client ID, enable IAP for the App Engine application, then add members to the IAP-secured Web App User role.

IAP verifies identity and authorization before allowing access to the application.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Enable the Identity-Aware Proxy API, configure the OAuth consent screen, create an OAuth 2.0 client ID, enable IAP for the App Engine application, then add members to the IAP-secured Web App User role.

    Why this is correct

    This is the correct order because you must enable the IAP API first, then set up the OAuth consent screen and client ID to handle authentication, then enable IAP on the application, and finally grant access to users.

  • ✗

    Enable IAP for the App Engine application, enable the Identity-Aware Proxy API, configure the OAuth consent screen, create an OAuth 2.0 client ID, then add members to the IAP-secured Web App User role.

    Why it's wrong here

    This is incorrect because the IAP API must be enabled before enabling IAP on the application, and the OAuth client must be created beforehand.

  • ✗

    Configure the OAuth consent screen, create an OAuth 2.0 client ID, enable IAP for the App Engine application, enable the Identity-Aware Proxy API, then add members to the IAP-secured Web App User role.

    Why it's wrong here

    This is incorrect because the IAP API must be enabled before you can use IAP features, and also before enabling IAP on the application.

  • ✗

    Enable the Identity-Aware Proxy API, configure the OAuth consent screen, enable IAP for the App Engine application, create an OAuth 2.0 client ID, then add members to the IAP-secured Web App User role.

    Why it's wrong here

    This is incorrect because the OAuth client ID must be created before enabling IAP on the application, as the application needs the client ID for authentication.

About these practice questions

This PDE question is part of Courseiva's 747-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This PDE practice question is part of Courseiva's free Google Cloud certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the PDE exam.