HEX
Server: Apache/2.4.65 (Ubuntu)
System: Linux ielts-store-v2 6.8.0-1036-gcp #38~22.04.1-Ubuntu SMP Thu Aug 14 01:19:18 UTC 2025 x86_64
User: root (0)
PHP: 7.2.34-54+ubuntu20.04.1+deb.sury.org+1
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,
Upload Files
File: //snap/google-cloud-cli/current/help/man/man1/gcloud_compute_instances_add-access-config.1
.TH "GCLOUD_COMPUTE_INSTANCES_ADD\-ACCESS\-CONFIG" 1



.SH "NAME"
.HP
gcloud compute instances add\-access\-config \- create a Compute Engine virtual machine access configuration



.SH "SYNOPSIS"
.HP
\f5gcloud compute instances add\-access\-config\fR \fIINSTANCE_NAME\fR [\fB\-\-access\-config\-name\fR=\fIACCESS_CONFIG_NAME\fR;\ default="external\-nat"] [\fB\-\-address\fR=\fIADDRESS\fR] [\fB\-\-network\-interface\fR=\fINETWORK_INTERFACE\fR;\ default="nic0"] [\fB\-\-network\-tier\fR=\fINETWORK_TIER\fR] [\fB\-\-zone\fR=\fIZONE\fR] [\fB\-\-public\-ptr\fR\ |\ \fB\-\-no\-public\-ptr\fR] [\fB\-\-public\-ptr\-domain\fR=\fIPUBLIC_PTR_DOMAIN\fR\ |\ \fB\-\-no\-public\-ptr\-domain\fR] [\fIGCLOUD_WIDE_FLAG\ ...\fR]



.SH "DESCRIPTION"

\fBgcloud compute instances add\-access\-config\fR is used to create access
configurations for network interfaces of Compute Engine virtual machines. This
allows you to assign a public, external IP to a virtual machine.



.SH "EXAMPLES"

To assign an public, externally accessible IP to a virtual machine named
\f5\fIexample\-instance\fR\fR in zone \f5\fIus\-central1\-a\fR\fR, run:

.RS 2m
$ gcloud compute instances add\-access\-config example\-instance \e
    \-\-zone=us\-central1\-a
.RE

To assign the specific, reserved public IP address \f5\fI123.456.789.123\fR\fR
to the virtual machine, run:

.RS 2m
$ gcloud compute instances add\-access\-config example\-instance \e
    \-\-zone=us\-central1\-a \-\-address=123.456.789.123
.RE



.SH "POSITIONAL ARGUMENTS"

.RS 2m
.TP 2m
\fIINSTANCE_NAME\fR

Name of the instance to operate on. For details on valid instance names, refer
to the criteria documented under the field 'name' at:
https://cloud.google.com/compute/docs/reference/rest/v1/instances


.RE
.sp

.SH "FLAGS"

.RS 2m
.TP 2m
\fB\-\-access\-config\-name\fR=\fIACCESS_CONFIG_NAME\fR; default="external\-nat"

Specifies the name of the new access configuration. \f5\fIexternal\-nat\fR\fR is
used as the default if this flag is not provided. Since ONE_TO_ONE_NAT is
currently the only access\-config type, it is not recommended that you change
this value.

.TP 2m
\fB\-\-address\fR=\fIADDRESS\fR

Specifies the external IP address of the new access configuration. If this is
not specified, then the service will choose an available ephemeral IP address.
If an explicit IP address is given, then that IP address must be reserved by the
project and not be in use by another resource.

.TP 2m
\fB\-\-network\-interface\fR=\fINETWORK_INTERFACE\fR; default="nic0"

Specifies the name of the network interface which contains the access
configuration. If this is not provided, then "nic0" is used as the default.

.TP 2m
\fB\-\-network\-tier\fR=\fINETWORK_TIER\fR

Specifies the network tier of the access configuration. \f5\fINETWORK_TIER\fR\fR
must be one of: \f5PREMIUM\fR, \f5STANDARD\fR. The default value is
\f5PREMIUM\fR.

.TP 2m
\fB\-\-zone\fR=\fIZONE\fR

Zone of the instance to operate on. If not specified, you might be prompted to
select a zone (interactive mode only). \f5gcloud\fR attempts to identify the
appropriate zone by searching for resources in your currently active project. If
the zone cannot be determined, \f5gcloud\fR prompts you for a selection with all
available Google Cloud Platform zones.

To avoid prompting when this flag is omitted, the user can set the
\f5\fIcompute/zone\fR\fR property:

.RS 2m
$ gcloud config set compute/zone ZONE
.RE

A list of zones can be fetched by running:

.RS 2m
$ gcloud compute zones list
.RE

To unset the property, run:

.RS 2m
$ gcloud config unset compute/zone
.RE

Alternatively, the zone can be stored in the environment variable
\f5\fICLOUDSDK_COMPUTE_ZONE\fR\fR.

.TP 2m

At most one of these can be specified:


.RS 2m
.TP 2m
\fB\-\-public\-ptr\fR

Creates a DNS PTR record for the external IP in the access configuration. This
option can only be specified for the default network\-interface, "nic0".

.TP 2m
\fB\-\-no\-public\-ptr\fR

If provided, no DNS PTR record is created for the external IP in the access
configuration. Mutually exclusive with public\-ptr\-domain.

.RE
.sp
.TP 2m

At most one of these can be specified:


.RS 2m
.TP 2m
\fB\-\-public\-ptr\-domain\fR=\fIPUBLIC_PTR_DOMAIN\fR

Assigns a custom PTR domain for the external IP in the access configuration.
Mutually exclusive with no\-public\-ptr. This option can only be specified for
the default network\-interface, "nic0".

.TP 2m
\fB\-\-no\-public\-ptr\-domain\fR

If both this flag and \-\-public\-ptr are specified, creates a DNS PTR record
for the external IP in the access configuration with the PTR domain name being
the DNS name of the instance.


.RE
.RE
.sp

.SH "GCLOUD WIDE FLAGS"

These flags are available to all commands: \-\-access\-token\-file, \-\-account,
\-\-billing\-project, \-\-configuration, \-\-flags\-file, \-\-flatten,
\-\-format, \-\-help, \-\-impersonate\-service\-account, \-\-log\-http,
\-\-project, \-\-quiet, \-\-trace\-token, \-\-user\-output\-enabled,
\-\-verbosity.

Run \fB$ gcloud help\fR for details.



.SH "NOTES"

These variants are also available:

.RS 2m
$ gcloud alpha compute instances add\-access\-config
.RE

.RS 2m
$ gcloud beta compute instances add\-access\-config
.RE