VPC Service Controls adds SPIFFE identity support
VPC Service Controls now supports Agent identities in SPIFFE formats for ingress and egress rules, enabling fine-grained access control for third-party workloads. This feature is now generally available, enhancing security for resources protected by service perimeters. Engineers and architects managing cloud security will find this useful for integrating external identities.
Features (1) ›
- VPC Service Controls VPC Service Controls feature:
VPC Service Controls feature: Support for using the following identities in ingress and egress rules to allow access to resources protected by a service perimeter is generally available : Agent identities SPIFFE formats for third-party workforce and workload identities For more information, see Configure identity groups and third-party identities in ingress and egress rules and Supported identities for ingress and egress rules .
https://docs.cloud.google.com/release-notes#June_29_2026
Related releases
- Config Connector 1.154.1 Adds New Alpha Resources and Field Support Google Cloud release notes ·
- Security Command Center: Data Residency & Agent Vulnerability Scanning Preview Google Cloud release notes ·
- Cloud SQL for PostgreSQL: Private Service Connect changes August 2026 Google Cloud release notes ·
- Cloud SQL for SQL Server: Private Service Connect connection behavior changes Google Cloud release notes ·
- Cloud SQL for MySQL: Private Service Connect and QueryData Updates Google Cloud release notes ·
- Cloud SQL for PostgreSQL: Faster CMEK Re-encryption Google Cloud release notes ·