Google Cloud Enhances Session Management with Granular Controls and Automation
Google Cloud has significantly enhanced its session management, integrating granular controls into Context-Aware Access to improve security. The update introduces programmatic management via Terraform, gcloud, and APIs, enabling DevSecOps workflows for defining and deploying session policies. Administrators can now apply precision policies based on Google Groups and specific applications, preventing all-or-nothing scenarios and targeting high-risk users. Most new features are now generally available, with Google Cloud Console-native policy management in public preview.
- →Programmatic management for session policies
- →Granular policy targeting using Google Groups
- →Application-specific session policy enforcement
- →Unified session policy management in Google Cloud Console
Features (4) ›
- Programmatic management for session policies
Session control policy configuration now supports DevSecOps workflows, allowing administrators to define, deploy, and manage policies programmatically using Terraform, gcloud CLI, and REST APIs. These capabilities are now generally available.
- Granular policy targeting using Google Groups
Session controls can now be targeted with precision using Google Groups, enabling distinct session policies for specific user clusters, regardless of their organizational hierarchy. This feature is now generally available.
- Application-specific session policy enforcement
Administrators can configure session controls for specific applications like the Google Cloud Console, gcloud CLI, and OAuth applications, avoiding blanket policies that could disrupt integrations. This update is generally available.
- Unified session policy management in Google Cloud Console
Session policies can now be managed directly within the Google Cloud Console alongside other access levels and security bindings in Access Context Manager, offering a unified experience. This functionality is available in preview.
https://cloud.google.com/blog/products/identity-security/introducing-new-session-management-tools-with-native-granular-controls/
Related releases
- Terraform Google Provider v8.3.0 Adds New GCP Resources, Enhancements Terraform Google Provider Releases ·
- Policy Troubleshooter adds support for agent identity access troubleshooting Google Cloud release notes ·
- Google Cloud Console Adds RL Fine-tuning for Gemini Models Google Cloud release notes ·
- Batch Workaround for Compute Engine VM OS Image Kernel Issue Google Cloud release notes ·
- Google Cloud Filestore launches managed agent volumes for GKE workspaces Google Cloud Blog ·
- Google Cloud Introduces Autonomous Network Operations Framework for Telcos Google Cloud Blog ·