Service Perimeter Egress Policy
EgressPolicies match requests based on egressFrom and egressTo stanzas. For an EgressPolicy to match, both egressFrom and egressTo stanzas must be matched. If an EgressPolicy matches a request, the request is allowed to span the ServicePerimeter boundary. For example, an EgressPolicy can be used to allow VMs on networks within the ServicePerimeter to access a defined set of projects outside the perimeter in certain contexts (e.g. to read data from a Cloud Storage bucket or query against a BigQuery dataset). To get more information about ServicePerimeterEgressPolicy, see:
Import
ServicePerimeterEgressPolicy can be imported using any of these accepted formats:
$ pulumi import gcp:accesscontextmanager/servicePerimeterEgressPolicy:ServicePerimeterEgressPolicy default {{perimeter}}
Properties
Defines conditions on the source of a request causing this EgressPolicy
to apply. Structure is documented below.
Defines the conditions on the ApiOperation
and destination resources that cause this EgressPolicy
to apply. Structure is documented below.