Why Google VMs don't have public DNS attached to them like AWS?

349 views
Skip to first unread message

Nick Sappa

unread,
May 1, 2017, 7:04:20 PM5/1/17
to gce-discussion
 I need to setup a callback URI to the product which running in single VM in GCP but I can not due to this rule Invalid Redirect: http://xx.138.198.104. must end with a public top-level domain (such as .com or .org)

Krishnan Saidapet P. T.

unread,
May 1, 2017, 7:14:34 PM5/1/17
to Nick Sappa, gce-discussion
Hi,

I believe it is a design choice and from a security perspective a good one I would say. If you have the flexibility to setup your own domain, you can use Cloud DNS to create a URL. If not, use a 3rd party URL service like bit.ly to create an URL.

cheers,


On Mon, May 1, 2017 at 6:10 PM, Nick Sappa <nsa...@gmail.com> wrote:
 I need to setup a callback URI to the product which running in single VM in GCP but I can not due to this rule Invalid Redirect: http://xx.138.198.104. must end with a public top-level domain (such as .com or .org)

--
© 2017 Google Inc. 1600 Amphitheatre Parkway, Mountain View, CA 94043
 
Email preferences: You received this email because you signed up for the Google Compute Engine Discussion Google Group (gce-discussion@googlegroups.com) to participate in discussions with other members of the Google Compute Engine community and the Google Compute Engine Team.
---
You received this message because you are subscribed to the Google Groups "gce-discussion" group.
To unsubscribe from this group and stop receiving emails from it, send an email to gce-discussion+unsubscribe@googlegroups.com.
To post to this group, send email to gce-discussion@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/gce-discussion/ebb2886a-ccaa-4a3e-b02c-898f2acc2d77%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.



--

Best Regards,
S. P. T. Krishnan PhD

Paul Nash

unread,
May 3, 2017, 1:13:09 PM5/3/17
to Krishnan Saidapet P. T., Nick Sappa, gce-discussion
It's a request we get, and we're evaluating it, but anything we do would likely be opt-in, because as Krishnan is implying, there are security concerns. Some people put things in their resource names that would reveal details about their deployment and configuration that they may not want to reveal publicly.

On Mon, May 1, 2017 at 4:14 PM, Krishnan S. P. T. <sptkr...@gmail.com> wrote:
Hi,

I believe it is a design choice and from a security perspective a good one I would say. If you have the flexibility to setup your own domain, you can use Cloud DNS to create a URL. If not, use a 3rd party URL service like bit.ly to create an URL.

cheers,

On Mon, May 1, 2017 at 6:10 PM, Nick Sappa <nsa...@gmail.com> wrote:
 I need to setup a callback URI to the product which running in single VM in GCP but I can not due to this rule Invalid Redirect: http://xx.138.198.104. must end with a public top-level domain (such as .com or .org)

--
© 2017 Google Inc. 1600 Amphitheatre Parkway, Mountain View, CA 94043
 
Email preferences: You received this email because you signed up for the Google Compute Engine Discussion Google Group (gce-discussion@googlegroups.com) to participate in discussions with other members of the Google Compute Engine community and the Google Compute Engine Team.
---
You received this message because you are subscribed to the Google Groups "gce-discussion" group.
To unsubscribe from this group and stop receiving emails from it, send an email to gce-discussion+unsubscribe@googlegroups.com.
To post to this group, send email to gce-dis...@googlegroups.com.
--

Best Regards,
S. P. T. Krishnan PhD

--
© 2017 Google Inc. 1600 Amphitheatre Parkway, Mountain View, CA 94043
 
Email preferences: You received this email because you signed up for the Google Compute Engine Discussion Google Group (gce-discussion@googlegroups.com) to participate in discussions with other members of the Google Compute Engine community and the Google Compute Engine Team.
---
You received this message because you are subscribed to the Google Groups "gce-discussion" group.
To unsubscribe from this group and stop receiving emails from it, send an email to gce-discussion+unsubscribe@googlegroups.com.
To post to this group, send email to gce-discussion@googlegroups.com.

For more options, visit https://groups.google.com/d/optout.



--

Paul R. Nash | Group Product Manager, Compute Engine | paul...@google.com | 206-876-1620

Nick Sappa

unread,
May 3, 2017, 2:51:30 PM5/3/17
to gce-discussion, Krishnan Saidapet P. T., Nick Sappa
Gents,
Thank you for your replies. Paul this is great your guys evaluating this options and opt-in seems to be logical and bring the best value to the customers in this case.
I gotta ask though, do you have a timeframe for rolling out this feature?
Cheers
nick


On Wednesday, May 3, 2017 at 10:13:09 AM UTC-7, Paul Nash wrote:
It's a request we get, and we're evaluating it, but anything we do would likely be opt-in, because as Krishnan is implying, there are security concerns. Some people put things in their resource names that would reveal details about their deployment and configuration that they may not want to reveal publicly.
On Mon, May 1, 2017 at 4:14 PM, Krishnan S. P. T. <sptkr...@gmail.com> wrote:
Hi,

I believe it is a design choice and from a security perspective a good one I would say. If you have the flexibility to setup your own domain, you can use Cloud DNS to create a URL. If not, use a 3rd party URL service like bit.ly to create an URL.

cheers,

On Mon, May 1, 2017 at 6:10 PM, Nick Sappa <nsa...@gmail.com> wrote:
 I need to setup a callback URI to the product which running in single VM in GCP but I can not due to this rule Invalid Redirect: http://xx.138.198.104. must end with a public top-level domain (such as .com or .org)

--
© 2017 Google Inc. 1600 Amphitheatre Parkway, Mountain View, CA 94043
 
Email preferences: You received this email because you signed up for the Google Compute Engine Discussion Google Group (gce-dis...@googlegroups.com) to participate in discussions with other members of the Google Compute Engine community and the Google Compute Engine Team.

---
You received this message because you are subscribed to the Google Groups "gce-discussion" group.
To unsubscribe from this group and stop receiving emails from it, send an email to gce-discussio...@googlegroups.com.
--

Best Regards,
S. P. T. Krishnan PhD

--
© 2017 Google Inc. 1600 Amphitheatre Parkway, Mountain View, CA 94043
 
Email preferences: You received this email because you signed up for the Google Compute Engine Discussion Google Group (gce-dis...@googlegroups.com) to participate in discussions with other members of the Google Compute Engine community and the Google Compute Engine Team.

---
You received this message because you are subscribed to the Google Groups "gce-discussion" group.
To unsubscribe from this group and stop receiving emails from it, send an email to gce-discussio...@googlegroups.com.

To post to this group, send email to gce-dis...@googlegroups.com.

Paul Nash

unread,
May 8, 2017, 5:51:21 AM5/8/17
to Nick Sappa, gce-discussion, Krishnan Saidapet P. T.
Sorry, I can't provide any specific timeframe right now, as our engineering schedule is pretty complicated and changes regularly. This isn't "just around the corner" but it's on our roadmap of improvements to make when we can. :/

Email preferences: You received this email because you signed up for the Google Compute Engine Discussion Google Group (gce-discussion@googlegroups.com) to participate in discussions with other members of the Google Compute Engine community and the Google Compute Engine Team.

---
You received this message because you are subscribed to the Google Groups "gce-discussion" group.
To unsubscribe from this group and stop receiving emails from it, send an email to gce-discussion+unsubscribe@googlegroups.com.
To post to this group, send email to gce-discussion@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/gce-discussion/1379a311-5349-408d-b343-1c8dfadfe632%40googlegroups.com.

For more options, visit https://groups.google.com/d/optout.
Reply all
Reply to author
Forward
0 new messages