VPC Service Controls adds SPIFFE identity support
VPC Service Controls now supports Agent identities in SPIFFE formats for ingress and egress rules, enabling fine-grained access control for third-party workloads. This feature is now generally available, enhancing security for resources protected by service perimeters. Engineers and architects managing cloud security will find this useful for integrating external identities.
Features (1) ›
- VPC Service Controls VPC Service Controls feature:
VPC Service Controls feature: Support for using the following identities in ingress and egress rules to allow access to resources protected by a service perimeter is generally available : Agent identities SPIFFE formats for third-party workforce and workload identities For more information, see Configure identity groups and third-party identities in ingress and egress rules and Supported identities for ingress and egress rules .
https://docs.cloud.google.com/release-notes#June_29_2026