搭配使用受限制的虛擬 IP (VIP) 和私人 Google 存取權,為 Google Cloud 服務的要求提供私人網路路徑,而不將要求公開至網際網路。受限制的 VIP 支援VPC Service Controls 可保護的所有 API。除了 VPC Service Controls 支援的服務,受限制的 VIP 也支援多項額外服務做為依附元件。
下表列出受限制的 VIP 支援的Google Cloud 服務。
除了表格中列出的服務名稱,受限 VIP 還包含一些額外端點,做為所列端點的依附元件。舉例來說,Container Registry 會使用 gcr.io
和 *.gcr.io
。
The table provides the level of support for each integration. The table includes the following stages of support:
- GA: This integration is fully supported by the restricted VIP and can be protected by VPC Service Controls perimeters.
- Beta: This integration receives a beta-stage level of support for the restricted VIP and can be protected by VPC Service Controls perimeters.
- Alpha: This integration receives an alpha-stage level of support for the restricted VIP and can be protected by VPC Service Controls perimeters for testing purposes only.
- Restricted VIP only: This service is integrated with the restricted VIP in order to support the use of other services and resources inside a service perimeter. It cannot be added to a perimeter as a protected service.
- Other: This service has not yet been assigned a support stage.
Services | Support stage |
---|---|
discovery.googleapis.com
|
Restricted VIP only |
oauth2.googleapis.com
|
Restricted VIP only |
openidconnect.googleapis.com
|
Restricted VIP only |
reauth.googleapis.com
|
Restricted VIP only |
accessapproval.googleapis.com
|
GA |
aiplatform.googleapis.com
|
GA |
alloydb.googleapis.com
|
GA |
analyticshub.googleapis.com
|
GA |
apigee.googleapis.com
|
GA |
apigeeconnect.googleapis.com
|
GA |
apihub.googleapis.com
|
GA |
apikeys.googleapis.com
|
GA |
apphub.googleapis.com
|
GA |
artifactregistry.googleapis.com
|
GA |
automl.googleapis.com
|
GA |
autoscaling.googleapis.com
|
GA |
backupdr.googleapis.com
|
GA |
baremetalsolution.googleapis.com
|
GA |
batch.googleapis.com
|
GA |
beyondcorp.googleapis.com
|
GA |
biglake.googleapis.com
|
GA |
bigquery.googleapis.com
|
GA |
bigquerydatapolicy.googleapis.com
|
GA |
bigquerydatatransfer.googleapis.com
|
GA |
bigquerymigration.googleapis.com
|
GA |
bigtable.googleapis.com
|
GA |
binaryauthorization.googleapis.com
|
GA |
blockchainnodeengine.googleapis.com
|
GA |
certificatemanager.googleapis.com
|
GA |
cloud.googleapis.com
|
GA |
cloudaicompanion.googleapis.com
|
GA |
cloudasset.googleapis.com
|
GA |
cloudbuild.googleapis.com
|
GA |
cloudcontrolspartner.googleapis.com
|
GA |
clouddeploy.googleapis.com
|
GA |
clouderrorreporting.googleapis.com
|
GA |
cloudfunctions.googleapis.com
|
GA |
cloudkms.googleapis.com
|
GA |
cloudprofiler.googleapis.com
|
GA |
cloudquotas.googleapis.com
|
GA |
cloudscheduler.googleapis.com
|
GA |
cloudsearch.googleapis.com
|
GA |
cloudtasks.googleapis.com
|
GA |
cloudtrace.googleapis.com
|
GA |
composer.googleapis.com
|
GA |
compute.googleapis.com
|
GA |
confidentialcomputing.googleapis.com
|
GA |
config.googleapis.com
|
GA |
configdelivery.googleapis.com
|
GA |
connectgateway.googleapis.com
|
GA |
connectors.googleapis.com
|
GA |
contactcenteraiplatform.googleapis.com
|
GA |
contactcenterinsights.googleapis.com
|
GA |
container.googleapis.com
|
GA |
containeranalysis.googleapis.com
|
GA |
containerfilesystem.googleapis.com
|
GA |
containerregistry.googleapis.com
|
GA |
containersecurity.googleapis.com
|
GA |
containerthreatdetection.googleapis.com
|
GA |
contentwarehouse.googleapis.com
|
GA |
databasecenter.googleapis.com
|
GA |
databaseinsights.googleapis.com
|
GA |
datacatalog.googleapis.com
|
GA |
dataflow.googleapis.com
|
GA |
dataform.googleapis.com
|
GA |
datafusion.googleapis.com
|
GA |
datalineage.googleapis.com
|
GA |
datamigration.googleapis.com
|
GA |
datapipelines.googleapis.com
|
GA |
dataplex.googleapis.com
|
GA |
dataproc.googleapis.com
|
GA |
datastream.googleapis.com
|
GA |
discoveryengine.googleapis.com
|
GA |
dlp.googleapis.com
|
GA |
dns.googleapis.com
|
GA |
documentai.googleapis.com
|
GA |
earthengine.googleapis.com
|
GA |
edgecontainer.googleapis.com
|
GA |
essentialcontacts.googleapis.com
|
GA |
eventarc.googleapis.com
|
GA |
file.googleapis.com
|
GA |
financialservices.googleapis.com
|
GA |
firebaseappcheck.googleapis.com
|
GA |
firebaserules.googleapis.com
|
GA |
firebasevertexai.googleapis.com
|
GA |
firestore.googleapis.com
|
GA |
gameservices.googleapis.com
|
GA |
gkebackup.googleapis.com
|
GA |
gkeconnect.googleapis.com
|
GA |
gkehub.googleapis.com
|
GA |
gkemulticloud.googleapis.com
|
GA |
gkeonprem.googleapis.com
|
GA |
healthcare.googleapis.com
|
GA |
iamcredentials.googleapis.com
|
GA |
iap.googleapis.com
|
GA |
iaptunnel.googleapis.com
|
GA |
identitytoolkit.googleapis.com
|
GA |
ids.googleapis.com
|
GA |
integrations.googleapis.com
|
GA |
kmsinventory.googleapis.com
|
GA |
krmapihosting.googleapis.com
|
GA |
kubernetesmetadata.googleapis.com
|
GA |
language.googleapis.com
|
GA |
livestream.googleapis.com
|
GA |
logging.googleapis.com
|
GA |
looker.googleapis.com
|
GA |
managedidentities.googleapis.com
|
GA |
memcache.googleapis.com
|
GA |
memorystore.googleapis.com
|
GA |
meshca.googleapis.com
|
GA |
meshconfig.googleapis.com
|
GA |
metastore.googleapis.com
|
GA |
microservices.googleapis.com
|
GA |
migrationcenter.googleapis.com
|
GA |
ml.googleapis.com
|
GA |
monitoring.googleapis.com
|
GA |
netapp.googleapis.com
|
GA |
networkconnectivity.googleapis.com
|
GA |
networkmanagement.googleapis.com
|
GA |
networksecurity.googleapis.com
|
GA |
networkservices.googleapis.com
|
GA |
notebooks.googleapis.com
|
GA |
ondemandscanning.googleapis.com
|
GA |
opsconfigmonitoring.googleapis.com
|
GA |
orgpolicy.googleapis.com
|
GA |
osconfig.googleapis.com
|
GA |
oslogin.googleapis.com
|
GA |
parallelstore.googleapis.com
|
GA |
parametermanager.googleapis.com
|
GA |
policysimulator.googleapis.com
|
GA |
policytroubleshooter.googleapis.com
|
GA |
privateca.googleapis.com
|
GA |
publicca.googleapis.com
|
GA |
pubsub.googleapis.com
|
GA |
pubsublite.googleapis.com
|
GA |
rapidmigrationassessment.googleapis.com
|
GA |
recaptchaenterprise.googleapis.com
|
GA |
recommender.googleapis.com
|
GA |
redis.googleapis.com
|
GA |
run.googleapis.com
|
GA |
secretmanager.googleapis.com
|
GA |
securesourcemanager.googleapis.com
|
GA |
securetoken.googleapis.com
|
GA |
securitycenter.googleapis.com
|
GA |
securitycentermanagement.googleapis.com
|
GA |
servicecontrol.googleapis.com
|
GA |
servicedirectory.googleapis.com
|
GA |
servicenetworking.googleapis.com
|
GA |
serviceusage.googleapis.com
|
GA |
spanner.googleapis.com
|
GA |
speakerid.googleapis.com
|
GA |
speech.googleapis.com
|
GA |
sqladmin.googleapis.com
|
GA |
ssh-serialport.googleapis.com
|
GA |
storage.googleapis.com
|
GA |
storageinsights.googleapis.com
|
GA |
storagetransfer.googleapis.com
|
GA |
sts.googleapis.com
|
GA |
texttospeech.googleapis.com
|
GA |
timeseriesinsights.googleapis.com
|
GA |
tpu.googleapis.com
|
GA |
trafficdirector.googleapis.com
|
GA |
transcoder.googleapis.com
|
GA |
translate.googleapis.com
|
GA |
videointelligence.googleapis.com
|
GA |
videostitcher.googleapis.com
|
GA |
vision.googleapis.com
|
GA |
visualinspection.googleapis.com
|
GA |
vmmigration.googleapis.com
|
GA |
vmwareengine.googleapis.com
|
GA |
vpcaccess.googleapis.com
|
GA |
webrisk.googleapis.com
|
GA |
websecurityscanner.googleapis.com
|
GA |
workflows.googleapis.com
|
GA |
workloadmanager.googleapis.com
|
GA |
workstations.googleapis.com
|
GA |
addressvalidation.googleapis.com
|
Beta support |
adsdatahub.googleapis.com
|
Beta support |
assuredoss.googleapis.com
|
Beta support |
assuredworkloads.googleapis.com
|
Beta support |
auditmanager.googleapis.com
|
Beta support |
cloudcode.googleapis.com
|
Beta support |
cloudresourcemanager.googleapis.com
|
Beta support |
cloudsupport.googleapis.com
|
Beta support |
commerceorggovernance.googleapis.com
|
Beta support |
dataprocgdc.googleapis.com
|
Beta support |
developerconnect.googleapis.com
|
Beta support |
dialogflow.googleapis.com
|
Beta support |
domains.googleapis.com
|
Beta support |
edgenetwork.googleapis.com
|
Beta support |
eventarcpublishing.googleapis.com
|
Beta support |
firebasecrashlytics.googleapis.com
|
Beta support |
firebasedataconnect.googleapis.com
|
Beta support |
iam.googleapis.com
|
Beta support |
licensemanager.googleapis.com
|
Beta support |
lifesciences.googleapis.com
|
Beta support |
modelarmor.googleapis.com
|
Beta support |
places.googleapis.com
|
Beta support |
privilegedaccessmanager.googleapis.com
|
Beta support |
retail.googleapis.com
|
Beta support |
seclm.googleapis.com
|
Beta support |
servicehealth.googleapis.com
|
Beta support |
storagebatchoperations.googleapis.com
|
Beta support |
telemetry.googleapis.com
|
Beta support |
visionai.googleapis.com
|
Beta support |
後續步驟
- 如要設定私人連線,請參閱「設定連至 Google API 與服務的私人連線」。
- 如要為
gcr.io
設定 DNS,如果使用 Google Kubernetes Engine (GKE),請參閱「為 GKE 私人叢集設定 Container Registry」。 - 瞭解如何排解常見的 VPC Service Controls 問題。
- 瞭解如何排解不同 Google Cloud 服務的常見問題。