external ip address range to white-list in network firewall from on-premise

1,636 views
Skip to first unread message

Silambarasan Sekar

unread,
Jan 24, 2018, 7:52:51 AM1/24/18
to gce-discussion
Hi Team,
We have our application behind HTTPS load balancer and the back end instances (tomcat) communicate with the on-premise application. 
Can you kindly let us know the range of the external IP address of the backend compute instances (which are part of auto scaling) so that we can white-list that range in our on-premise for the communication between the on-premise and GCP servers. Thank you!


Thanks & Regards
Venu

Fady (Google Cloud Platform)

unread,
Jan 24, 2018, 2:13:08 PM1/24/18
to gce-discussion

Venu,


For the time being, listing/providing external IP ranges for GCE instances for a specific project is not available. You may open a feature request about it here. On the other hand, and as an alternative, you can list all Google Cloud Platform IP ranges. However, Google Cloud Platform uses large IP ranges that change all the time, and it’s best to list them through DNS lookup following this document . Whitelisting such large IP ranges seem counterintuitive for your use case. Therefore, I suggest using VPN and utilizing the use of internal IP addresses which ranges are easily acquired through the VPC in use.


Reply all
Reply to author
Forward
0 new messages