Cloud Armor Policy

Cloud Armor Policy Presets

Ready-to-deploy configuration presets for Cloud Armor Policy. Each preset is a complete manifest you can copy, customize, and deploy.

3 presets
01

Preset: Basic IP Allowlist

Restrict access to your backend to known corporate or VPN IP ranges. All traffic from allowlisted CIDR blocks is permitted; everything else receives a 403. Ideal for internal dashboards, admin...

02

Preset: Rate Limiting for API Endpoints

Protect APIs from abuse and DDoS with per-IP rate limiting and ban escalation. Traffic under the throttle limit is allowed; exceeding it returns 429. Persistent abusers crossing the ban threshold are...

03

Preset: WAF OWASP Protection

Protect web applications and APIs against OWASP Top 10–style attacks: SQL injection (SQLi), cross-site scripting (XSS), and Layer 7 DDoS. Uses Cloud Armor preconfigured WAF rules derived from OWASP...