Load Balancing

  1. PCI Compliant HTTPS load balancer option

    Can we please get a check-box or way to configure so that we don't need to keep dealing with exceptions and complaints from the scanners when following the https://cloud.google.com/solutions/pci-dss guide due to HTTPS load balancers supporting things like "Medium Strength Cipher Suites" and "TLS Version 1.0" or unremoveable HTTP Proxy headers. All of which are heavily discouraged by PCI DSS.

    Thanks!

    64 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    5 comments  ·  Flag idea as inappropriate…  ·  Admin →
  2. TCP Load balance with different frontend and backend ports

    Currently TCP load balancing requires the frontend and backend listeners to share the same port. It would be useful if the backend port could be different to the frontend.

    78 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    3 comments  ·  Flag idea as inappropriate…  ·  Admin →
  3. Improve your Load Balancer Interface. It is confusing. There is no clarity and separation of UI for Network and HTTP(S) Load Balancer

    Improve your Load Balancer Interface. It is confusing. There is no clarity and separation of UI for Network and HTTP(S) Load Balancer.
    Users always get confused when you are creating a Load Balancer.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  4. HTTP Load Balancer with client certificate verification

    Currently the load balancer supports only server side certificates. It will be big step to have client certificate verification.

    178 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  5. HTTPS Load Balancing: Support multiple certificates for a single target proxy.

    A single target proxy can be attached to a URL map containing multiple host rules, thereby allowing it to support multiple hostnames. However, a target HTTPS proxy currently only supports a single certificate. Therefore, supporting multiple hostnames using a single HTTPS global forwarding rule requires that each hostname be specified as a separate SAN within the certificate.

    This is not ideal for a number of reasons: for example, some certificate authorities charge more for a single SAN than for a single-hostname certificate. A certificate with multiple SANs is also larger than necessary, potentially leading to a slower TLS handshake.

    It…

    57 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  6. We need load balancer log....

    If the detail access log from load balancer can be read, will better!

    57 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  7. Allow multiple health checks on an ILB

    An ILB can provide load balancing on multiple TCP ports. But, when you associate a health check to ILB, you can create only 1 health check on only 1 TCP port. If backend servers are listening on multiple TCP ports, it adds value to provide health check for all those ports

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  8. Your Geo-IP data is not accurate.

    Hi Google Cloud, regarding your load balance geo-ip feature(https://cloud.google.com/compute/docs/load-balancing/http/backend-service#user-defined-request-headers …), we found it's not accurate and we would like to share our findings, may I have a contact (email)so I can send our findings?

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  9. Set load balancer timeout in k8s deplyment spec

    instead of manually running
    gcloud compute backend-services update --global ${BACKEND_NAME} --timeout=${TIMEOUT}

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  10. Internal Load Balancer support UDP session affinity

    Internal load balancer doesn't support session affinity when using UDP.
    But Load Balancer does.

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  11. Allow RSA and ECC certs per frontend

    It would be great if the load balancer supported both RSA and ECC certs for the same frontend.

    In our experience supporting ECC improves both connection startup time for the client and CPU usage on the server.

    4 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  12. enable the internal load balancer to use an instance group without an external IP

    if you create an instance group without an external ip when you create an internal load balancer, it creates a health check. Health check uses in external ip address for verification.

    oops. the instances do not have an external IP address.

    Health check should be installed on the load balancer and use the internal IP address of the backend services.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  13. BUG Error console Load Balancing

    The deletion of some of the forwarding rules failed. Error: Code: '53BD0BF586D29.A1ED39D.E70FD608'.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
2 Next →
  • Don't see your idea?

Load Balancing

Categories

Feedback and Knowledge Base