Identity-Aware Proxy now supports IAM Unified Access Policies for Agent Gateway
IAM Unified Access Policies for Agent Gateway, integrated with Identity-Aware Proxy (IAP), are now generally available. These policies enhance security and governance for agentic egress communication between agent principals and various destination resources. They enable fine-grained behavioral guardrails using multiple allow/deny rules with Common Expression Language (CEL) conditions for enforcing access criteria. Additional features include dry-run modes for validation and end-to-end agent identity authentication with mutual TLS (mTLS) and Context-Aware Access (CAA).
Features (1) ›
- Identity-Aware Proxy IAM Unified Access Policies for Agent Gateway are generally available (GA)
IAM Unified Access Policies for Agent Gateway are generally available (GA) IAM Unified Access Policies (Access policies) for Agent Gateway and Identity-Aware Proxy (IAP) are generally available (GA) . Identity-Aware Proxy integrates with Agent Gateway and uses Access policies to help secure and govern agentic egress communication between agent principals and destination resources, such as Model Context Protocol (MCP) servers, other agents, and registered or unregistered endpoints. Key capabilities include: Multiple allow and deny rules within a single Access policy to establish fine-grained be
https://docs.cloud.google.com/release-notes#August_31_2026
Related releases
- Google Cloud Contact Center as a Service resolves reporting and queue management issues Google Cloud release notes ·
- GKE 1.37 Now Available, Deprecates Identity Service for GKE Google Cloud release notes ·
- Cloud Trace Observability API now supports VPC Service Controls Google Cloud release notes ·
- Cloud SQL for PostgreSQL Admin API adds regional endpoints for GA Google Cloud release notes ·
- Cloud Run Jobs Adds Delayed Execution for Cost Savings Google Cloud release notes ·
- VPC Service Controls for Observability API reaches general availability Google Cloud release notes ·