[google-appengine] Re: How GAE services in separate projects communicate through their respective firewall ?

2020-06-02 Thread 'Katayoon (Cloud Platform Support)' via Google App Engine
Note that, IAP provides a proxy in which the service can be accessed by authenticated users who have the correct Cloud Identity and Access Management (Cloud IAM) role, not per IP. As Olu previously noted, App Engine does not currently provi

[google-appengine] Re: How GAE services in separate projects communicate through their respective firewall ?

2020-05-31 Thread Zorg
Thank you for your reply Olu. My goal is to build an app that required some services to be exposed to any public IP and others multiple back-end services closed to any external access. All thoses services are accessed through an home-made api gateway. I started looking at identity aware proxy b

[google-appengine] Re: How GAE services in separate projects communicate through their respective firewall ?

2020-05-29 Thread Zorg
For precision all our services run nodejs Le vendredi 29 mai 2020 13:47:14 UTC+2, Zorg a écrit : > > We have 2 app engine app (flex and standard) running on separate projects > and we want project A to request project B with https to xxx.appspot.com > URL. > > Our firewall on both projects Denie

[google-appengine] Re: How GAE services in separate projects communicate through their respective firewall ?

2020-05-29 Thread 'Olu' via Google App Engine
As you may already know, GCP Projects represent a trust boundary within an organization. Hence, inter-project communication between App Engine services would require Public IP communication or using Shared VPC[1]. There should be no internal communication between App Engine Services over differ