Create a private instance with Private Service Connect

Learn how to create a Cloud Data Fusion private instance with Private Service Connect.


To follow step-by-step guidance for this task directly in the Google Cloud console, click Guide me:

Guide me


Before you begin

  1. Sign in to your Google Cloud account. If you're new to Google Cloud, create an account to evaluate how our products perform in real-world scenarios. New customers also get $300 in free credits to run, test, and deploy workloads.
  2. In the Google Cloud console, on the project selector page, select or create a Google Cloud project.

    Go to project selector

  3. Make sure that billing is enabled for your Google Cloud project.

  4. In the Google Cloud console, on the project selector page, select or create a Google Cloud project.

    Go to project selector

  5. Make sure that billing is enabled for your Google Cloud project.

  6. Enable the Cloud Data Fusion, BigQuery, Cloud Storage, and Dataproc APIs.

    Enable the APIs

  7. Get the roles and permissions required to create a network attachment and a Cloud Data Fusion instance. For more information, see Required roles and permissions.
  8. Make sure that you have created a VPC or a Shared VPC network.

Create a private instance with Private Service Connect

  1. Go to the Cloud Data Fusion Instances page, and click Create instance.

    Create an instance

  2. In the Instance name field, enter a name for your new instance.

  3. In the Description field, enter a description for your instance.

  4. From the Region drop-down, select the Google Cloud region in which you want to create the instance.

  5. From the Version drop-down, select 6.10 or later.

  6. Select an Edition.

  7. Expand Advance options and do the following:

    1. Select Enable private IP.

    2. For Connectivity type, select Private Service Connect.

    3. From the Network attachment drop-down, select a network attachment.

      If a network attachment is not present, create a new one:

      1. Click Create network attachment.
      2. In the Name field, enter a name for your network attachment.
      3. From the Network drop-down, select a VPC or a Shared VPC network.
      4. The Region field is auto-updated. Its value is same as the the Cloud Data Fusion instance. You can't edit this field.
      5. From the Subnetwork drop-down, select a subnetwork range.

      6. For Connection preference, the option Accept connections for selected projects is auto-selected.

        When you create the Cloud Data Fusion instance, the Cloud Data Fusion tenant project is automatically added to the Accepted projects list.

        Note: The option Automatically accept connections for all projects is less secure because it allows any service to obtain IP addresses from your subnet.

      7. Click Create.

      8. On the Create instance page, from the Network attachment drop-down, select the newly created network attachment.

  8. Click Create. It takes up to 30 minutes for the instance creation process to complete.

Clean up

To avoid incurring charges to your Google Cloud account for the resources used on this page, follow these steps.

Delete the Cloud Data Fusion instance

Follow these instructions to delete your Cloud Data Fusion instance.

Delete the project

The easiest way to eliminate billing is to delete the project that you created for the tutorial.

To delete the project:

  1. In the Google Cloud console, go to the Manage resources page.

    Go to Manage resources

  2. In the project list, select the project that you want to delete, and then click Delete.
  3. In the dialog, type the project ID, and then click Shut down to delete the project.

What's next