← All stories
● Covered by 1 source · 1 reportMedium impact1 neutral

Google Cloud Introduces Granular Session Management Tools with Automation and Group Targeting

🔄 Updated 6d ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • Default Google Cloud session length is now 16 hours.
  • Session controls are integrated with Context-Aware Access.
  • Policies can be configured programmatically using Terraform, gcloud, and APIs.
  • Session policies can now target Google Groups for granular control.
  • Controls can be applied to specific applications like Cloud Console and gcloud.

Enhanced Session Management for Google Cloud

Google Cloud has introduced new session management tools, evolving its approach from broad administrative settings to deeply integrated, granular controls within Context-Aware Access (CAA). This update follows a global rollout of a 16-hour default session length for all Google Cloud customers.

The new features aim to provide administrators with more flexibility, better automation capabilities, and a more natural security workflow for managing user sessions.

Automation-First Policy Configuration

Session Controls policy configuration is now generally available for programmatic management, supporting DevSecOps workflows. Administrators can define, deploy, and manage session policies using Terraform, gcloud CLI, and REST APIs.

This allows for integration into infrastructure manifests, command-line management, and automated policy enforcement across complex multi-tenant environments.

Granular Targeting with Google Groups

A key upgrade is the ability to target policies with precision using Google Groups, a shift from previous organizational unit (OU) based targeting. This enables applying distinct session policies to specific user clusters.

For example, users with elevated privileges, such as billing administrators, can have a two-hour session, while general developers maintain a standard 16-hour session, regardless of their position in the organizational hierarchy.

Precision Application Controls

The updated Session Controls policy allows for configuring session controls for specific applications, rather than applying a blanket policy across all applications requiring Google Cloud API scopes. This feature is now generally available.

Supported applications include the Google Cloud Console, the gcloud command-line tool, and specific OAuth applications, preventing an all-or-nothing scenario for session enforcement.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~26 min · 21 stories · Sep 23

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

Google Cloud has rolled out new session management tools that offer native, granular controls, moving beyond broad administrative settings. These updates include programmatic policy configuration via Terraform, gcloud, and APIs, along with the ability to target policies using Google Groups and apply controls to specific applications.