Google Cloud BlogSenzeni Mpofu2 min readintermediate
Introducing new session management tools with native, granular controls
Summary
Google Cloud adds programmable session controls that can be managed via Terraform, gcloud CLI, and REST APIs, with policies scoped to Google Groups and individual applications, moving away from org‑unit defaults.
- Session controls can now be defined as code using Terraform, gcloud, or REST APIs, enabling CI/CD enforcement.
- Policies target Google Groups instead of OUs, allowing distinct session lengths per user cohort.
- Admins can apply session limits to specific apps (Console, gcloud, OAuth apps) to avoid blanket disruptions.
- A Cloud Console UI preview lets admins manage session policies alongside other Access Context Manager bindings.
Security teams and platform engineers who need fine‑grained reauthentication policies will benefit from automated, context‑aware session management.
5/10

