Virtual Private Cloud (VPC) firewall rules are free of charge.
Cloud Next Generation Firewall Essentials and Cloud Next Generation Firewall Standard data processing is billed in the following way:
Price (USD) | |
|---|---|
Cloud NGFW Standard | $0.0193 / 1 gibibyte |
Endpoint Deployment | Data Processing | |
|---|---|---|
Cloud NGFW Enterprise | $1.75 / 1 hour | $0.0193 / 1 gibibyte |
Example:
The user created a firewall endpoint in each of the zones in us-east1 (us-east1-b, us-east1-c, us-east1-d) with the same billing project: FW-Billing-Project, and associated the endpoint with VPC-1 under App-Project.
The user then configured firewall rules for VPC-1 to apply IPS inspection for its Internet ingress traffic and ran it for the whole month - 30 days, with 2TB inspected in total.
In this case, the total cost incurred in this month is:
Each hierarchical firewall policy is priced based on the total number of attributes in all the firewall rules that it contains and on the number of VMs that it covers.
A rule attribute is an IP address range, port, protocol, or service account. For more information about attributes, see Hierarchical firewall rule attributes in a hierarchical firewall policy on the Quotas page.
Number of attributes in all rules in a policy | Price (USD) per month |
|---|---|
500 or fewer attributes in the policy (standard) | $0.001369863 / 1 hour |
501 or more attributes in the policy (large) | $0.002054795 / 1 hour |
Examples:
A policy with 200 attributes that covers 200 VMs costs $200/month: 1 * 200 = 200.
A policy with 600 attributes that covers 200 VMs costs $300/month: 1.50 * 200 = 300.
A policy that has no VMs is free.
Firewall Insights pricing is described in Network Intelligence Center pricing.
Firewall Rules Logging pricing is described in Network Telemetry pricing.