By default deny rules take precedence over allow rules of the same priority.
@croppycoo16682 жыл бұрын
So firewall rules can target the entire VPC or specific tags. But how would I create a firewall rule that targets only a specific subnet?
@RajaArvapalli3 ай бұрын
In Google Cloud Platform (GCP), firewall rules are evaluated based on their priority and the action they take (allow or deny). When two firewall rules have the same priority, the deny rule takes precedence over the allow rule. This means that if there is a conflict between an allow and a deny rule with the same priority, the traffic will be denied.
@diogenesesantoАй бұрын
When you have allow and deny firewall rules with the same priority, the deny rules take precedence over the allow rules.
@rachpalsingh34982 жыл бұрын
Super useful as always. Thanks for sharing.
@akshayeonline Жыл бұрын
For a REST API request from GCP compute to internet do we need to enable both egress and Ingress ?
@readersclub93 Жыл бұрын
Does adding tons of firewalls rules with many parameters over a large global network, can slow down traffic by some milisecs ? You mentioned something over stateful nature of firewall, does it play a part in reducing the calc time for every ingres, egress transfer ?
@samgarvis45092 жыл бұрын
Super insightful, thank you!
@sumanthanumula804810 ай бұрын
DENY TAKES PRIORITY
@vamsikrishnag14173 жыл бұрын
Nice architecture GK.. thanks a lot for explanation.. It is easy to understand how the firewall rules can configure and work.
@CloudAdvocate3 жыл бұрын
Thanks Vamsi.
@srikanthjangamgari73163 жыл бұрын
Well explained..... Thank you Bro.
@ilarums4 жыл бұрын
1. If you have 2 firewall rules with the same priority one allow and another deny and then firewall rule with the action deny will take precedence
@CloudAdvocate4 жыл бұрын
Nailed it!!
@ilarums4 жыл бұрын
@@CloudAdvocate Like your videos simple and easy to understand
@CloudAdvocate4 жыл бұрын
Thank you, I love to keep it simple.
@FirasALTAIE4 жыл бұрын
Deny rule has a priority over allow rule
@CloudAdvocate4 жыл бұрын
Yesss!!
@nyshashinde89263 жыл бұрын
Deny rule give the most priority. I need a suggestion from you actually I am preparing for Associate cloud engineer certification. On which part I work the most means like deep divd about the apps or resources, or focusing on installation and IAM rules and many more that, I am little confuse about that.
@albyjd23933 жыл бұрын
Thanks for the lesson.
@ShauryaShresht Жыл бұрын
1. Firewall Policy vs Firewall Rule (Where to use which one and why) 2. Create Firewall Policy and Implement it for Hybrid use case (Typically customer has dev and prod projects, hence a implement it considering both project) 3. Rules, Policy and Association (Understand use case in detail) 4. Automation of this using terraform (Hierarchical Firewall Policy Automation with Terraform | Google Cloud Blog) can you make a documentation on these ? Need help in understanding clearly kindly look into it, if you can answer all of them.
@singarareddybathula24343 жыл бұрын
I am looking for GCP training. are you provide gcp training.
@christianibiri4 жыл бұрын
I love your videos and channel, please do more stuff about GCP!
@CloudAdvocate3 жыл бұрын
Thank you! Will do!
@oldguywholifts3 жыл бұрын
Well explained... brilliant!
@CloudAdvocate3 жыл бұрын
Glad you liked it!
@enugurthisahithi23503 жыл бұрын
This is so helpful.
@EshwarNorthEast4 жыл бұрын
The effort you put in delivering knowledge is lit 🤩
@CloudAdvocate4 жыл бұрын
Thank you!!
@nila_g2 жыл бұрын
Hi GK I am currently working as a database administrator(Progress DBA..its a RDBMS). I want to shift to a cloud career and I am interested in GCP but I am confused about how to proceed. Can you suggest me a cloud course ?
@MaheshVelicheti4 жыл бұрын
Explanation is in detail GK bro.thanks for sharing the information.
@CloudAdvocate4 жыл бұрын
Thanks Mahesh.
@pxiao13 жыл бұрын
could u explain more about ssh, icmp and rdp? :)
@mayurnarkhede88393 жыл бұрын
Thanks for wonderful video and explanation. Can I get more complex examples as you said it is stateful.
@mohammedmustafaali10493 жыл бұрын
Thanks very much, this is very helpful
@CloudAdvocate3 жыл бұрын
You're welcome!
@sivasankar85604 жыл бұрын
Nice explanation 👍
@CloudAdvocate4 жыл бұрын
Thank you!
@Mohit-gb9dv4 жыл бұрын
Do you need app devlopment knowledge to get into cloud ..? Plz reply
@CloudAdvocate4 жыл бұрын
No
@arnab0224 жыл бұрын
I currently work as a network engineer, I am interested to shift to cloud, any tips please?
@CloudAdvocate4 жыл бұрын
Arnab try to look into the content of network engineer certification for cloud.
@andersonmora7693 жыл бұрын
We need geoip in firewall rules, define ranges is exhaustive.
@sachinmengade95893 жыл бұрын
Superb Stuff @GK :) I always like the way you explain the things :)