Some or all of the information on this page might not apply to Trusted Cloud by S3NS.
Rules for including VPC networks in service perimeters
This document lists the rules to add VPC networks to VPC Service Controls.
When you add VPC networks to service perimeters, the following rules apply:
If the host project is not protected by a perimeter, you can add VPC networks in the host project to separate perimeters under the same access policy.
VPC networks in the same host project must exist under the same access policy.
You can add VPC networks and their host project to the same perimeter.
VPC networks and their host project must not exist in different perimeters.
You cannot add a VPC network to multiple perimeters.
You cannot use VPC networks in a perimeter bridge.
If a VPC network's parent project is in a perimeter bridge,
you cannot add the VPC network to a perimeter.
What's next
Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License, and code samples are licensed under the Apache 2.0 License. For details, see the Google Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.
Last updated 2025-08-07 UTC.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Missing the information I need","missingTheInformationINeed","thumb-down"],["Too complicated / too many steps","tooComplicatedTooManySteps","thumb-down"],["Out of date","outOfDate","thumb-down"],["Samples / code issue","samplesCodeIssue","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-08-07 UTC."],[],[]]