gcp Google Cloud release notes ·

Identity-Aware Proxy now supports IAM Unified Access Policies for Agent Gateway

securitygcpgaarchitect
feature

IAM Unified Access Policies for Agent Gateway, integrated with Identity-Aware Proxy (IAP), are now generally available. These policies enhance security and governance for agentic egress communication between agent principals and various destination resources. They enable fine-grained behavioral guardrails using multiple allow/deny rules with Common Expression Language (CEL) conditions for enforcing access criteria. Additional features include dry-run modes for validation and end-to-end agent identity authentication with mutual TLS (mTLS) and Context-Aware Access (CAA).

Features (1)
  • Identity-Aware Proxy IAM Unified Access Policies for Agent Gateway are generally available (GA)

    IAM Unified Access Policies for Agent Gateway are generally available (GA) IAM Unified Access Policies (Access policies) for Agent Gateway and Identity-Aware Proxy (IAP) are generally available (GA) . Identity-Aware Proxy integrates with Agent Gateway and uses Access policies to help secure and govern agentic egress communication between agent principals and destination resources, such as Model Context Protocol (MCP) servers, other agents, and registered or unregistered endpoints. Key capabilities include: Multiple allow and deny rules within a single Access policy to establish fine-grained be

Read the original announcement →

https://docs.cloud.google.com/release-notes#August_31_2026

Related releases