Google Compute platform - how to accept traffic only from the target proxy?

GCP proxies are used to provide a public access point to HTTP (S) backend services.

Is there a way to accept traffic only from the target proxy, and not directly?

+4
source share
1 answer

You do not need to assign external IP addresses for your internal instances. When creating instances , you have 3 options:

  • networkInterfaces []. accessConfigs - undefined, not an external IP;
  • networkInterfaces []. accessConfigs []. natIP undefined, use an ephemeral external IP;
  • networkInterfaces []. accessConfigs []. natIP , IP.

gcloud, --no-address gcloud IP-.

IP- accessConfig, . gcloud API.

BTW, , ​​ IP-, .

+1

Source: https://habr.com/ru/post/1658668/


All Articles