How We Built a Solution That Improves Google Cloud Security by Leveraging Managed Instance Groups | HackerNoon

Canada News News

How We Built a Solution That Improves Google Cloud Security by Leveraging Managed Instance Groups | HackerNoon
Canada Latest News,Canada Headlines
  • 📰 hackernoon
  • ⏱ Reading Time:
  • 92 sec. here
  • 3 min. at publisher
  • 📊 Quality Score:
  • News: 40%
  • Publisher: 51%

'How We Built a Solution That Improves Google Cloud Security by Leveraging Managed Instance Groups' by CheckPointSW checkpoint security

What are the important considerations and objectives for using MIGs with CloudGuard Network Security?

CloudGuard security gateways can automatically respond to health checks by the load balancer. This also allows CloudGuard security gateways to be used with internal as well as external load balancers. The health check confirms that the CloudGuard security gateway is functional and if not, the load balancer will not forward traffic to this specific instance. The security gateways start responding to health checks immediately after being automatically configured.

This allows the MIG to easily increase and decrease the number of members, and supports an auto-scaling solution for outbound/egress and East-West traffic protection.This architecture was not possible until recently because Google Cloud did not support specifying a specific interface when setting a MIG as an ILB backend pool. Internal and external load balancers could keep only the external interfaces as backend pool. This may lead to asymmetrical routing.

Of course, the security gateway will start to respond to the probe immediately only after being automatically configured.a few weeks ago. Symmetric hashing is used by internal load balancers so that “when packets belong to the same flow, Google Cloud calculates the same hash. In other words, the hash doesn’t change when the source IPLet’s see how this improves the automation and ease of use of Google Cloud traffic routing with CloudGuard.

The same gateway needs to inspect the returning traffic from Spoke2 to Spoke1. If another gateway inspects this traffic, it will possibly block this traffic . Before the release of symmetric hashing, to ensure that the traffic returning from Spoke2 to Spoke1 is routed to the same gateway, this gateway needed to use source network address translation on the traffic: in other words, assign its own IP instead of the source IP from Spoke1.

We have summarized this news so that you can read it quickly. If you are interested in the news, you can read the full text here. Read more:

hackernoon /  🏆 532. in US

Canada Latest News, Canada Headlines

Similar News:You can also read news stories similar to this one that we have collected from other news sources.

Beijing Winter Olympics opening ceremony kicks off under a cloud of controversyBeijing Winter Olympics opening ceremony kicks off under a cloud of controversyThe actual events have been underway for days and athletes – and China – are staying focused, despite widespread criticism over the host nation's human rights record.
Read more »

A Cosmic Water Cloud Shadow Has Revealed The Temperature of The Early UniverseA Cosmic Water Cloud Shadow Has Revealed The Temperature of The Early UniverseSometimes astronomers and astrophysicists are working at such gigantic, mind-bending scales – in terms of both distance and time – that you can't help but be awestruck at the new discoveries they keep coming out with.
Read more »

Google highlights repairable Chromebooks for education as it battles cheap Windows laptopsGoogle highlights repairable Chromebooks for education as it battles cheap Windows laptopsGoogle has a plan to make Chromebooks easier to repair
Read more »

FBI used Google location data to investigate Seattle arson following BLM protest | EngadgetFBI used Google location data to investigate Seattle arson following BLM protest | Engadgetn 2020, federal police used a geofence warrant to obtain location data from Google as part of an investigation into an attempted arson against a police union headquarters in Seattle, new court documents show..
Read more »

Google quickly exterminates Pixel 6 line's Magic Eraser bug with simple fixGoogle quickly exterminates Pixel 6 line's Magic Eraser bug with simple fixThe Magic Eraser bug which caused the Google Photos app to crash on the Pixel 6 and Pixel 6 Pro has been fixed by Google.
Read more »

Google tested a smarter, contextually aware full-page version of 'At a Glance' for Android 11Google tested a smarter, contextually aware full-page version of 'At a Glance' for Android 11Screenshots reveal changes that Google was working on for Android 11 featuring a smarter, more contextually aware 'At a Glance' widget.
Read more »



Render Time: 2025-03-05 07:14:43