gcp Google Cloud release notes ·

GCP Network Security Integration adds direct internet egress

securitygcpgaarchitect
feature

GCP's Network Security Integration now supports a direct internet egress deployment model. This enhancement allows network security appliances in producer VPC networks to directly inspect outbound internet traffic. Responses are sent directly back to consumer VMs using GENEVE, bypassing the return hop to the consumer VPC network. This streamlined approach improves efficiency for secure internet egress and is relevant for customers managing outbound traffic inspection.

Features (1)
  • Network Security Integration

    Network Security Integration in-band integration now supports the direct internet egress deployment model. In this model, the network security appliance in the producer VPC network inspects outbound traffic and sends it directly to the internet through its external network interface. The appliance then sends the internet response packet directly to the consumer VM using GENEVE, bypassing the return hop to the consumer VPC network. For more information, see Direct internet egress .

Read the original announcement →

https://docs.cloud.google.com/release-notes#August_20_2026

Related releases