About This Architecture

Data-exfiltration protection on GCP: a VPC Service Controls perimeter encloses BigQuery and Cloud Storage. A VM in an authorized VPC inside the perimeter is allowed access, while a caller outside the perimeter with valid but out-of-perimeter credentials is blocked at the egress boundary. Perimeter interior and exterior are grouped, with the blocked path labeled.

GCP VPC Service Controls Perimeter

GCPCurated TemplateSecurity
14 views0 favoritesPublic

Created by

July 2, 2026

Updated

September 30, 2026 at 12:27 AM

Type

architecture

Need a custom architecture diagram?

Describe your architecture in plain English and get a production-ready Draw.io diagram in seconds. Works for AWS, Azure, GCP, Kubernetes, and more.

Generate with AI

AI-generated. Verify before production use. Learn more

Report this diagram