There are configured firewall rules to allow health check probes to the
backend.
Misconfigured
There are firewall rules configured to allow partial health check ranges
or block all health check ranges.
If a health check probe is sent from denied IP ranges,
the health check to the backend will fail. Then, the backend will be
marked unhealthy and will not receive traffic sent to the load balancer.
Unspecified
State is unspecified. Default state if not populated.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Missing the information I need","missingTheInformationINeed","thumb-down"],["Too complicated / too many steps","tooComplicatedTooManySteps","thumb-down"],["Out of date","outOfDate","thumb-down"],["Samples / code issue","samplesCodeIssue","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-08-12 UTC."],[[["\u003cp\u003eThis webpage provides documentation for the \u003ccode\u003eHealthCheckFirewallState\u003c/code\u003e enum within the \u003ccode\u003eGoogle.Cloud.NetworkManagement.V1\u003c/code\u003e namespace, detailing its various states.\u003c/p\u003e\n"],["\u003cp\u003eThe latest version documented is 2.13.0, with links to previous versions available, down to 1.0.0.\u003c/p\u003e\n"],["\u003cp\u003eThe \u003ccode\u003eHealthCheckFirewallState\u003c/code\u003e enum defines three states: \u003ccode\u003eConfigured\u003c/code\u003e, indicating proper firewall rules; \u003ccode\u003eMisconfigured\u003c/code\u003e, for partial or blocked health check ranges; and \u003ccode\u003eUnspecified\u003c/code\u003e, the default state.\u003c/p\u003e\n"],["\u003cp\u003eThe documentation specifies the consequence of a \u003ccode\u003eMisconfigured\u003c/code\u003e state, where backends are marked as unhealthy and do not receive traffic when health checks fail due to blocked IPs.\u003c/p\u003e\n"]]],[],null,[]]