Google Cloud Weekly - GCP Newsletter #241

Welcome to issue #241 May 10th, 2021

News

Contact Center AI Official Blog

Customers handle up to 28% more concurrent chats with Agent Assist for Chat - Contact Center AI Agent Assist for Chat is now in Public Preview, speeding up resolutions to customers’ problems.

Data Analytics Official Blog

Databricks on Google Cloud is now generally available - With the GA of Databricks on Google Cloud, enterprises get the benefits of an open data cloud platform with greater analytics flexibility, unified infrastructure management, and optimized performance.

Cloud Operations Official Blog

OpenTelemetry Trace 1.0 is now available - Google Cloud continues to invest in OpenTelemetry with many of our partners to provide standardized metrics, logs and traces for our users.

DevOps Official Blog

Take the 2021 State of DevOps survey: Shape the future of DevOps - Help us shape the future of DevOps and make your voice heard by completing the 2021 State of DevOps survey before June 11, 2021.

 

Articles, Tutorials

Infrastructure, Networking, Security, Kubernetes

Official Blog Security

13 best practices for user account, authentication, and password management, 2021 edition - Google Cloud offers our best practices to ensure you have a safe, scalable, usable account authentication system.

Official Blog VMware Engine

Retire your tech debt: Move vSphere 5.5+ to Google Cloud VMware Engine - Migrating your legacy VMware vSphere environment to Google Cloud VMware Engine can be a quick and easy way to get your systems back into compliance.

AWS Azure Google Cloud Platform Official Blog

A handy new Google Cloud, AWS, and Azure product map - To help developers translate their prior experience with other cloud providers to Google Cloud, we have created a table showing how generally available Google Cloud services map to similar offerings in AWS and Azure.

IAM Monitoring Security

Dear Keys, are you still alive ? - Monitoring which service account keys are used.

IAM Kubernetes Workload Identity Federation

Solving the Workload Identity sameness with IAM Conditions - Context.

IAM Security

Three methods for obtaining GCP access tokens - Using user credentials, service account credentials or the metadata service to obtain access tokens from Google’s Identity service.

BigQuery

The Multi-Cloud Future (4) — Five Patterns To Get You To Start ‘Thinking’ Multi-cloud - To do multi-cloud, you should first ‘think multi-cloud’. Here are five patterns that can get you to start ‘thinking’ multi-cloud.

Anthos Docker Google Kubernetes Engine

CI/CD using Cloud Build for “Migrate for Anthos” - Migrate the Nodejs server running on a GCE VM to GKE using Migrate for Anthos tool and setup CI/CD using Cloud Build.

AWS Networking

Networking in Google Cloud: Creating subnets in GCP - This blog is for the AWS professionals struggling to correlate the difference between AWS and GCP network & other beginner individuals who are looking to start with GCP.

Cloud Operations DevOps Official Blog SRE

SRE fundamentals 2021: SLIs vs SLAs vs SLOs - What’s the difference between an SLI, an SLO and an SLA? Google Site Reliability Engineers (SRE) explain.

Google Kubernetes Engine Kubernetes Secret Manager Security Spinnaker

Injecting Secrets in GKE with Secret Manager - Handling application secret in GKE using Secret Manager.

IAM Security Terraform

Security in GCP — Impersonation - Using Service Account impersonation on example of Terraform.

App Development, Serverless, Databases, DevOps

Official Blog Storage

A map of storage options in Google Cloud - This post covers the different storage options available within Google Cloud across three storage types: object storage, block storage, and file storage. It also covers the use cases that are best suited for each storage option.

Cloud Spanner Official Blog

Include Cloud Spanner databases in your CI/CD process with the Liquibase extension - In February, we announced the beta version of the Liquibase Cloud Spanner extension that allows developers to use Liquibase's open-source database library to manage and automate schema changes in Cloud Spanner. We're happy to share that the Liquibase Cloud Spanner extension is now GA.

.NET Cloud Spanner

Google Cloud Spanner with Entity Framework Core - This article will help you get started with Entity Framework Core for Spanner by creating a simple Console App that uses Spanner with EF Core.

Cloud Bigtable Official Blog

Scheduling Cloud Bigtable Backups - In this tutorial, you'll learn how to create backups at regularly scheduled intervals (such as daily or weekly) using the Cloud Bigtable Scheduled Backups example.

gRPC Networking Official Blog Traffic Director

Debugging your Proxyless gRPC service mesh - New tools, examples, and documentation to make it easier to debug your Proxyless gRPC applications.

Cloud Run Serverless

How Cloud Run changes Cloud Architecture - Exploring and improving Cloud Run startup latencies.

Cloud Run NodeJS

Deploy Cloud Run for Nodejs Projects in Nx Workspace - Nx is a suite of powerful, extensible dev tools to help you architect, test, and build at any scale.

Compute Engine

Few tips and tricks with GCE startup script - Detecting when GCE startup script completes.

Billing Compute Engine

The Hidden Costs of Google Compute Engine IPs - What you need to know when using more than one network interface in Google Cloud.

CI Cloud Functions DevOps NodeJS Serverless

Deploying GCP Cloud Function via Bitbucket Pipelines + Serverless Framework - Setting CI/CD pipeline for Cloud Functions.

Cloud Functions PubSub

Sending emails natively from Google Cloud Pub/Sub events - pubsub_sendmail is a Google Cloud Function that can be triggered by a Google Cloud Pub/Sub which then sends an email using Python smtplib to the desired recipient.

App Engine Java Security

How I Hacked Google App Engine: Anatomy of a Java Bytecode Exploit - A story about finding vulnerability and developing an exploit to break out of the App Engine sandbox and get arbitrary code execution on a Google server.

Big Data, Analytics, ML&AI

BigQuery Cloud Dataflow Cloud Scheduler Data Studio Public Datasets Serverless

Serverless: A journey to a no-ops Data Architecture on Google Cloud - An example of serverless data architecture to process Covid-19 data.

Enterprise ETL automation on GCP - Large enterprises never have just one or two data sources. It’s always tens or hundreds of places they need to pull data from, if not….

Apache Beam Cloud Datastore Java

Apache Beam: Look-up Table with Side Input - Using the side input feature of Apache Beam.

Airflow BigQuery Cloud Composer

Collecting Wine Reviews Data Using Apache Airflow & Cloud Composer - Explaining Airflow basics and example of a pipeline using GCP producs.

Machine Learning Official Blog

PyTorch on Google Cloud: How to train PyTorch models on AI Platform - With PyTorch on Google Cloud blog series, we aim to share—how to build, train and deploy PyTorch models at scale, how to create reproducible machine learning pipelines on Google Cloud AI Platform and emphasize Cloud AI Platform’s first class support for training and deploying PyTorch models.

BigQuery

BigQuery Stored Procedure for Permutation Test - Learn how to use stored procedures to apply permutation tests to any dataset quickly and efficiently.

AI Platform Notebooks Official Blog Security

New blueprint helps secure confidential data in AI Platform Notebooks - Get an in-depth look at AI Platform Notebooks security features and get a step-by-step guide to better secure your Notebooks environment.

Document AI Official Blog

Diving into your documents with DocAI - Shine a light on all your "dark" data with Google's Document AI. Turn unstructured pdfs into fully automated workflows with machine learning powered parsers.

AI Platform Machine Learning

Serverless Prediction at Scale: Custom Model Deployment on Google Cloud AI Platform - Deploying a real-world custom healthcare model to Google Cloud AI Platform, exposing the model as a secure REST API, and verify the model’s scalability with load testing.

Apache Beam BigQuery Cloud Dataflow

Creating ML Datasets with ease using BigQuery and Dataflow - If you’re working with large amounts of data, BigQuery and Dataflow on GCP can boost your efficiency when generating datasets for ML.

Various

GCP Experience

5 customers explain why they migrated from AWS to GCP - 5 SADA customers who explain why they decided to make the move from AWS to GCP.

GCP Experience

Why Spotify loves being locked into Google Cloud - Some companies are wary about using a single cloud vendor, or using managed services that can be hard to quit. Spotify has made a big bet in the other direction.

Infrastructure Official Blog

Google Cloud and Seagate: Transforming hard-disk drive maintenance with predictive ML - Seagate and Google work on ML that forecasts the probability of problems with hard disk drives.

Event Official Blog Security

What you can learn in our Q2 2021 Google Cloud Security Talks on May 12th - Navigate the latest news in cloud security for spring 2021 with our experts from Google Cloud.

Cloud SQL Event Kubernetes

Don’t miss these talks on the Google community track at Percona Live Online - Join Google community track at Percona Live Online on May 12–13, 2021 for talks on topics ranging from using databases with Kubernetes to database migration to observability and troubleshooting.

Event

Toronto Meetup up - Running Business Analytics for a Serverless Insurance Company - Learn WHY & HOW to bring analytics superpowers of BigQuery data warehouse to your AWS solutions.

Dialogflow

Book - The Definitive Guide to Conversational AI with Dialogflow and Google Cloud - Build Advanced Enterprise Chatbots, Voice, and Telephony Agents on Google Cloud.

Data Science GCP Certification

How I Passed the GCP Professional ML Engineer Certification - A study plan to pass ML Engine certification exam.

Slides, Videos, Audio

GCP Podcast - #258 The Power of Serverless with Aparna Sinha and Philip Beevers.

Kubernetes Podcast - #149 Putting on a KubeCon, with Colleen Mickey.

Firebase

PodRocket Podcast - Firebase, development, and design in 2021 with David East.

 

Releases

AI Platform - Deep Learning Containers - M68 Release Upgraded R containers from 3.6 to 4.0.

AI Platform - Deep Learning VMs - M68 Release Upgraded R Images from 3.6 to 4.0.

BigTable - New guidance is available to help you schedule Cloud Bigtable backups using Cloud Scheduler, Pub/Sub, and Cloud Functions. Cloud Bigtable now provides a Cloud Monitoring metric that reports the amount of logical storage bytes that a backup is using. The ability to restore from a Cloud Bigtable backup to a different instance is now generally available.

Compute Engine - Generally available: Create virtual machines for high performance computing (HPC) workloads using the HPC VM image.

Config Connector - Config Connector version 1.49.1 is now available. Miscellaneous bug fixes.

Data Fusion - There is an issue in the BigQuery sink plugin version 0.17.0, which causes data pipelines to fail or give incorrect results.

Cloud Healthcare API - v1. The defaultSearchHandlingStrict field in the projects.locations.datasets.fhirStores.FhirStore resource is now available in the v1 version of the Cloud Healthcare API.

Google Kubernetes Engine - You can now enable and configure OS Login for private GKE clusters and nodes. The Envoy and Istio projects recently announced several new security vulnerabilities ( CVE-2021-28683, CVE-2021-28682, and CVE-2021-29258) that could allow an attacker to crash Envoy. (2021-R15) Version updates GKE cluster versions have been updated. The kubelet graceful node shutdown feature is now enabled on preemptible and GPU accelerator nodes running versions 1.20.5-gke.500 or later.

Google Kubernetes Engine Rapid - (2021-R15) Version updates Version 1.19.9-gke.1900 is now the default version in the Rapid channel.

Google Kubernetes Engine Regular - (2021-R15) Version updates Version 1.18.17-gke.100 is now the default version in the Regular channel.

Google Kubernetes Engine Stable - (2021-R15) Version updates Version 1.18.17-gke.100 is now the default version in the Stable channel.

Load Balancing - Zonal NEGs (with GCE_VM_IP network endpoints) can now be used as backends for internal TCP/UDP load balancers.

Cloud Logging - The Logs Explorer Histogram offers new time controls, including zooming and scrolling, to give you more in-depth analysis of your logs data. You can now add custom fields in the Logs Explorer to better analyze logs and refine your queries.

Cloud Monitoring - Cloud Monitoring has added new ways to interact with charts. The Query Editor for Monitoring Query Language (MQL) has been reimplemented. The Inventory tab on the Cloud Monitoring VM Instances dashboard now offers the ability to filter and sort the instance table by any combination of columns.

Cloud Run - By default, the memory allocated to each container instance of a new service is 512MiB. You can now use Identity-aware Proxy with Cloud Run to use identity and context to guard access to your applications.

Security Command Center - Security Command Center Premium has launched Continuous Exports for Pub/Sub in general availability. Security Health Analytics, a built-in service of Security Command Center, has launched a new detector, PUBSUB_CMEK_DISABLED, in general availability. Event Threat Detection, a built-in service of Security Command Center, has launched a new detector in general availability. Documentation Event Threat Detection and Container Threat Detection documentation now includes examples of JSON output for findings.

Cloud Speech-to-Text - The Speech-to-Text model adaptation feature is now a GA feature.

Cloud Video Intelligence API - The following features are available in the Video Intelligence API version v1: Face detection: Locate faces within a video, and identify attributes such as glasses being worn.

Deep Learning VM - M68 Release Upgraded R Images from 3.6 to 4.0.

Artifact Registry - v1beta2. Artifact Registry now supports audit logging for container images in Cloud Audit Logs.

Anthos clusters on bare metal - 1.6 & 1.7. The Envoy and Istio projects recently announced several new security vulnerabilities (CVE-2021-28683, CVE-2021-28682, and CVE-2021-29258) that could allow an attacker to crash Envoy.

AI Platform Unified - You can now use a pre-built container to serve predictions from TensorFlow 2.4 models. You can now use a pre-built container to serve predictions from scikit-learn 0.24 models. You can now use a pre-built container to serve predictions from XGBoost 1.3 models.

GKE on-prem 1.5 - The Envoy and Istio projects recently announced several new security vulnerabilities (CVE-2021-28683, CVE-2021-28682, and CVE-2021-29258) that could allow an attacker to crash Envoy. Anthos clusters on VMware 1.7.1-gke.4 is now available. If you upgrade the admin cluster before you upgrade the associated user clusters within the same minor version, such as from 1.7.0 to 1.7.1, the user control-planes will be upgraded together with the admin cluster. Fixes: Fixed a bug, so that the hardware version of a virtual machine is determined based on the ESXi host apiVersion instead of the host version.

Anthos clusters on VMware 1.7 - The Envoy and Istio projects recently announced several new security vulnerabilities (CVE-2021-28683, CVE-2021-28682, and CVE-2021-29258) that could allow an attacker to crash Envoy. Anthos clusters on VMware 1.7.1-gke.4 is now available. If you upgrade the admin cluster before you upgrade the associated user clusters within the same minor version, such as from 1.7.0 to 1.7.1, the user control-planes will be upgraded together with the admin cluster. Fixes: Fixed a bug, so that the hardware version of a virtual machine is determined based on the ESXi host apiVersion instead of the host version.

Cloud Run for Anthos - Starting in Cloud Run for Anthos versions 0.21 and later, the new default progress deadline for deployments is up to 10 minutes.

SAP Solutions - Updated SAP HANA certification of the 6 TB m2-megamem-416 machine type For OLAP workloads, the SAP certification of the Compute Engine 6 TB m2-megamem-416 machine type now includes: Scale-out configurations up to 16 nodes.

Anthos clusters on VMware 1.6 - The Envoy and Istio projects recently announced several new security vulnerabilities (CVE-2021-28683, CVE-2021-28682, and CVE-2021-29258) that could allow an attacker to crash Envoy. Anthos clusters on VMware 1.7.1-gke.4 is now available. If you upgrade the admin cluster before you upgrade the associated user clusters within the same minor version, such as from 1.7.0 to 1.7.1, the user control-planes will be upgraded together with the admin cluster. Fixes: Fixed a bug, so that the hardware version of a virtual machine is determined based on the ESXi host apiVersion instead of the host version.

GKE - (2021-R15) Version updates Version 1.18.17-gke.100 is now the default version.

If you have suggestion, feedback or link you want to share feel free to email me at zdenko@gcpweekly.com

Have a great week,

Zdenko

Older messages

GCP Newsletter #240

Monday, May 3, 2021

Welcome to issue #240 May 3rd, 2021 News Infrastructure Official Blog Google Cloud announces new region to support growing customer base in Israel - The new Google Cloud region in Israel will bring low

GCP Newsletter #239

Monday, April 26, 2021

Welcome to issue #239 April 26th, 2021 News Cloud Functions Official Blog PHP Serverless Introducing PHP on Cloud Functions - You can now write Cloud Functions in PHP using the Functions Framework for

GCP Newsletter #238

Monday, April 19, 2021

Welcome to issue #238 April 19th, 2021 News Infrastructure Official Blog The new Google Cloud region in Warsaw is open - The Google Cloud region in Warsaw is now ready for business, opening doors for

GCP Newsletter #237

Monday, April 12, 2021

Welcome to issue #237 April 12th, 2021 News Cloud Spanner Official Blog Introducing request priorities for Cloud Spanner APIs - You can now specify request priorities for some Cloud Spanner APIs. By

GCP Newsletter #236

Monday, April 5, 2021

Welcome to issue #236 April 5th, 2021 News Cloud Operations Compute Engine Google Kubernetes Engine Official Blog Analyze your GKE and GCE logging usage data easier with new dashboards - Download open

You Might Also Like

New Blogs on ThomasMaurer.ch for 04/23/2024

Tuesday, April 23, 2024

View this email in your browser Thomas Maurer Cloud & Datacenter Update This is the update for blog posts on ThomasMaurer.ch. Cloud operations for Windows Server through Azure Arc By Thomas Maurer

Post-Post 🗨️

Tuesday, April 23, 2024

Assessing the post-Twitter climate amid Post.News' shutdown. Here's a version for your browser. Hunting for the end of the long tail • April 22, 2024 Post-Post The demise of Post, one of the

BetterDev #257 - Building a GPS Receiver

Monday, April 22, 2024

Better Dev #257 Apr 22, 2024 Hi all, We come back with a new issue this week. If you like BetterDev, please help spead word out by refer to your friends. Buy me a coffee would be great too. This week I

Tomorrow's Free Notes Class: How to sign up!

Monday, April 22, 2024

Hi there, Tomorrow we will be hosting a Free Notes App Class. This is your last chance to register for tomorrow's live class and learn how to get the most out of your Notes app. Our experienced

Elon’s ‘balls to the wall’ autonomy push

Monday, April 22, 2024

Plus: Amazon ends California drone deliveries and Rippling's founder has a brand-new bag View this email online in your browser By Christine Hall Monday, April 22, 2024 Image Credits: Toru Hanai/

📱 Your iPhone is Now Discoverable by Others — Tips for Building Your First PC

Monday, April 22, 2024

Also: How to Play Windows Games on Your Mac, and More! How-To Geek Logo April 22, 2024 📩 Get expert reviews, the hottest deals, how-to's, breaking news, and more delivered directly to your inbox by

JSK Daily for Apr 22, 2024

Monday, April 22, 2024

JSK Daily for Apr 22, 2024 View this email in your browser A community curated daily e-mail of JavaScript news It Is so Cool to Develop React Native With Expo 1. What are the benefits of Expo?. "

😺 The social walkie-talkie

Monday, April 22, 2024

Hi, hi! It's Monday and it's Earth Day! Don't miss the Cat Nips section below for innovative products in the... Product Hunt Read in browser This newsletter is brought to you by YOU MIGHT

The Rings of Power

Monday, April 22, 2024

A paid tier for Spyglass: 'The Inner Ring' The Rings of Power By MG Siegler • 22 Apr 2024 View in browser View in browser On January 22, 2024, exactly one quarter ago, I launched Spyglass. Over

Engineering the future

Monday, April 22, 2024

Don't worry -- we'll be diving into the Mars Sample Return news. View this email online in your browser By Aria Alamalhodaei Monday, April 22, 2024 Hello and welcome back to TechCrunch Space.