HEX
Server: Apache/2.4.65 (Ubuntu)
System: Linux ielts-store-v2 6.8.0-1036-gcp #38~22.04.1-Ubuntu SMP Thu Aug 14 01:19:18 UTC 2025 x86_64
User: root (0)
PHP: 7.2.34-54+ubuntu20.04.1+deb.sury.org+1
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,
Upload Files
File: //snap/google-cloud-cli/396/lib/googlecloudsdk/schemas/compute/beta/SecuritySettings.yaml
$schema: "http://json-schema.org/draft-06/schema#"

title: compute beta SecuritySettings export schema
description: A gcloud export/import command YAML validation schema.
type: object
additionalProperties: false
properties:
  COMMENT:
    type: object
    description: User specified info ignored by gcloud import.
    additionalProperties: false
    properties:
      template-id:
        type: string
      region:
        type: string
      description:
        type: string
      date:
        type: string
      version:
        type: string
  UNKNOWN:
    type: array
    description: Unknown API fields that cannot be imported.
    items:
      type: string
  authentication:
    description: '[Deprecated] Use clientTlsPolicy instead.'
    type: string
  awsV4Authentication:
    description: |-
      The configuration needed to generate a signature for access to private
      storage buckets that support AWS's Signature Version 4 for authentication.
      Allowed only for INTERNET_IP_PORT and INTERNET_FQDN_PORT NEG backends.
    $ref: AWSV4Signature.yaml
  clientTlsPolicy:
    description: |-
      A URL referring to a networksecurity.ClientTlsPolicy resource that
      describes how clients should authenticate with this service's backends.
      clientTlsPolicy only applies to a global BackendService with the
      loadBalancingScheme set to INTERNAL_SELF_MANAGED. If left blank,
      communications are not encrypted.
    type: string
  subjectAltNames:
    description: |-
      A list of Subject Alternative Names (SANs) that the client verifies during
      a mutual TLS handshake with an server/endpoint for this BackendService.
      When the server presents its X.509 certificate to the client, the client
      inspects the certificate's subjectAltName field. If the field contains one
      of the specified values, the communication continues. Otherwise, it fails.
      This additional check enables the client to verify that the server is
      authorized to run the requested service. Note that the contents of the
      server certificate's subjectAltName field are configured by the Public Key
      Infrastructure which provisions server identities. Only applies to a
      global BackendService with loadBalancingScheme set to
      INTERNAL_SELF_MANAGED. Only applies when BackendService has an attached
      clientTlsPolicy with clientCertificate (mTLS mode).
    type: array
    items:
      type: string