Identity-Aware Proxy
The Cloud Identity-Aware Proxy (IAP) is a free and fully managed authentication layer for App Engine applications and services hosted behind HTTPS load balancers. IAP runs at the edge of the GCP network to provide a centralized access control plane. Organizations define access policies using IAM, which may apply to service accounts, users, or entire domains. These policies are then enforced on specific GCP resources.
When applied to a GCP resource, Cloud IAP becomes the first stop for all ingress traffic to that resource. Users who are not authenticated and authorized are immediately redirected to a login flow via Google's OAuth 2.0 Accounts sign-in. Once authenticated, Google checks whether the given user possesses the ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access