<?xml version="1.0" encoding="UTF-8"?>
<!-- AUTOGENERATED FILE. DO NOT EDIT. -->
<feed xmlns="http://www.w3.org/2005/Atom">
  <id>tag:google.com,2016:secure-web-proxy-release-notes</id>
  <title>Secure Web Proxy - Release notes</title>
  <link rel="self" href="https://docs.cloud.google.com/feeds/secure-web-proxy-release-notes.xml"/>
  <author>
    <name>Google Cloud Platform</name>
  </author>
  <updated>2026-08-20T00:00:00-07:00</updated>

  <entry>
    <title>August 20, 2026</title>
    <id>tag:google.com,2016:secure-web-proxy-release-notes#August_20_2026</id>
    <updated>2026-08-20T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/secure-web-proxy/docs/release-notes#August_20_2026"/>
    <content type="html"><![CDATA[<h3>Feature</h3>
<p>Secure Web Proxy now supports the <a href="https://docs.cloud.google.com/secure-web-proxy/docs/enable-tls-inspection#ca-pool-intermediate-ca-config">local intermediate CA
signing</a>
certificate issuance mode for TLS inspection. By using this mode,
Secure Web Proxy caches a single intermediate certificate authority (CA)
certificate from your CA pool to sign leaf certificates locally for requested
domains, reducing certificate issuance requests and transaction costs. To use
this certificate issuance mode, you must make sure that your CA pool is
configured to issue intermediate CA certificates.</p>
<p>For more information, see <a href="https://docs.cloud.google.com/secure-web-proxy/docs/tls-inspection-overview#certificate_issuance_modes">Certificate issuance
modes</a>
and <a href="https://docs.cloud.google.com/secure-web-proxy/docs/enable-tls-inspection#ca-pool-intermediate-ca-config">Configure a local intermediate CA
signing</a>.
This feature is <a href="https://cloud.google.com/products#product-launch-stages">generally
available (GA)</a>.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>June 16, 2026</title>
    <id>tag:google.com,2016:secure-web-proxy-release-notes#June_16_2026</id>
    <updated>2026-06-16T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/secure-web-proxy/docs/release-notes#June_16_2026"/>
    <content type="html"><![CDATA[<h3>Feature</h3>
<p>You can now use <a href="https://docs.cloud.google.com/secure-web-proxy/docs/policies-and-rules-overview#authorization-policies">authorization
policies</a>
to perform identity-based and content-based access control checks when
processing outbound traffic requests through Secure Web Proxy.</p>
<p>By <a href="https://docs.cloud.google.com/secure-web-proxy/docs/setup-authz-policies">configuring authorization
policies</a>, you can set rules for
your workloads to access external destinations. You can also use these
authorization policies to delegate complex authorization decisions to identity
and content-scanning services like Service Extensions. This feature is
supported in <a href="https://cloud.google.com/products#product-launch-stages">Preview</a>.</p>
<h3>Feature</h3>
<p>You can <a href="https://docs.cloud.google.com/secure-web-proxy/docs/use-frontend-mtls-with-swp">integrate frontend mutual TLS (mTLS) with
Secure Web Proxy</a> to boost
the security of your applications and workloads.</p>
<p>With this integration, you can use validated client identities in
Secure Web Proxy <a href="https://docs.cloud.google.com/secure-web-proxy/docs/policies-and-rules-overview#authorization-policies">authorization
policies</a>
to enforce granular access control for outbound traffic. This feature is
supported in <a href="https://cloud.google.com/products#product-launch-stages">Preview</a>.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>May 21, 2026</title>
    <id>tag:google.com,2016:secure-web-proxy-release-notes#May_21_2026</id>
    <updated>2026-05-21T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/secure-web-proxy/docs/release-notes#May_21_2026"/>
    <content type="html"><![CDATA[<h3>Feature</h3>
<p>When deploying your Secure Web Proxy instance as <a href="https://docs.cloud.google.com/secure-web-proxy/docs/deploy-next-hop">next
hop</a>, you can now configure the gateway
to listen on all ports (from <code>1</code> to <code>65535</code>). By using this feature, your proxy
can automatically intercept and enforce security policies and rules to all
outbound traffic, removing the need to manage specific port lists.</p>
<p>This feature is supported in
<a href="https://cloud.google.com/products#product-launch-stages">Preview</a>.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>August 18, 2025</title>
    <id>tag:google.com,2016:secure-web-proxy-release-notes#August_18_2025</id>
    <updated>2025-08-18T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/secure-web-proxy/docs/release-notes#August_18_2025"/>
    <content type="html"><![CDATA[<h3>Feature</h3>
<p>Support for <a href="https://docs.cloud.google.com/vpc-service-controls/docs/supported-products#table_swp">VPC Service Controls</a> is <a href="https://cloud.google.com/products/#general-availability">generally available</a> (GA).</p>
]]>
    </content>
  </entry>

  <entry>
    <title>January 20, 2025</title>
    <id>tag:google.com,2016:secure-web-proxy-release-notes#January_20_2025</id>
    <updated>2025-01-20T00:00:00-08:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/secure-web-proxy/docs/release-notes#January_20_2025"/>
    <content type="html"><![CDATA[<h3>Feature</h3>
<p>Secure Web Proxy (SWP) uses a <a href="https://docs.cloud.google.com/nat/docs/overview">Cloud Network Address Translation (NAT)</a> gateway to allow external communication between Google Cloud Platform (GCP) workloads and internet destinations. This NAT gateway is automatically provisioned when you set up your SWP instance. </p>
<p>To limit the number of IP addresses being used up, the <a href="https://docs.cloud.google.com/secure-web-proxy/docs/additional-considerations#configure-nat">Cloud NAT gateway</a> now uses dynamic port allocation (DPA) for SWP. This feature is <a href="https://cloud.google.com/products/#general-availability">generally available</a> (GA).</p>
]]>
    </content>
  </entry>

  <entry>
    <title>October 28, 2024</title>
    <id>tag:google.com,2016:secure-web-proxy-release-notes#October_28_2024</id>
    <updated>2024-10-28T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/secure-web-proxy/docs/release-notes#October_28_2024"/>
    <content type="html"><![CDATA[<h3>Feature</h3>
<p>You can now configure your Secure Web Proxy (SWP) instance to be a <a href="https://docs.cloud.google.com/secure-web-proxy/docs/deploy-next-hop">next hop</a> for routing web traffic within your network. To create a next hop, you can use either <a href="https://docs.cloud.google.com/secure-web-proxy/docs/deploy-next-hop#policy-based-routes">policy-based routes</a> or <a href="https://docs.cloud.google.com/secure-web-proxy/docs/deploy-next-hop#static-routes">static routes</a>.</p>
<p>With the launch of this deployment mode, you now have the flexibility to deploy your SWP instance in <a href="https://docs.cloud.google.com/secure-web-proxy/docs/quickstart">explicit proxy mode</a>, as a <a href="https://docs.cloud.google.com/secure-web-proxy/docs/deploy-service-attachment">Private Service Connect (PSC) service attachment</a>, or as a <a href="https://docs.cloud.google.com/secure-web-proxy/docs/deploy-next-hop">next hop</a>. This feature is now <a href="https://cloud.google.com/products/#general-availability">generally available</a> (GA).</p>
]]>
    </content>
  </entry>

  <entry>
    <title>September 17, 2024</title>
    <id>tag:google.com,2016:secure-web-proxy-release-notes#September_17_2024</id>
    <updated>2024-09-17T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/secure-web-proxy/docs/release-notes#September_17_2024"/>
    <content type="html"><![CDATA[<h3>Feature</h3>
<p>The <a href="https://docs.cloud.google.com/run/docs/configuring/vpc-direct-vpc">Direct VPC egress</a> feature of Cloud Run now supports <a href="https://docs.cloud.google.com/secure-web-proxy/docs/overview">Secure Web Proxy</a>. This feature is <a href="https://cloud.google.com/products/#general-availability">generally available</a> (GA).</p>
]]>
    </content>
  </entry>

  <entry>
    <title>June 03, 2024</title>
    <id>tag:google.com,2016:secure-web-proxy-release-notes#June_03_2024</id>
    <updated>2024-06-03T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/secure-web-proxy/docs/release-notes#June_03_2024"/>
    <content type="html"><![CDATA[<h3>Feature</h3>
<p>You can now publish Secure Web Proxy (SWP) as a <a href="https://docs.cloud.google.com/secure-web-proxy/docs/deploy-service-attachment">Private Service Connect (PSC) service attachment</a>. With this feature, you can centralize and apply security policies on your egress web traffic. This feature is now <a href="https://cloud.google.com/products/#general-availability">generally available</a> (GA).</p>
]]>
    </content>
  </entry>

  <entry>
    <title>May 22, 2023</title>
    <id>tag:google.com,2016:secure-web-proxy-release-notes#May_22_2023</id>
    <updated>2023-05-22T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/secure-web-proxy/docs/release-notes#May_22_2023"/>
    <content type="html"><![CDATA[<h3>Feature</h3>
<p><a href="https://docs.cloud.google.com/secure-web-proxy/docs">Secure Web Proxy</a> is generally available (<a href="https://cloud.google.com/products#product-launch-stages">GA</a>).</p>
]]>
    </content>
  </entry>

  <entry>
    <title>March 14, 2023</title>
    <id>tag:google.com,2016:secure-web-proxy-release-notes#March_14_2023</id>
    <updated>2023-03-14T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/secure-web-proxy/docs/release-notes#March_14_2023"/>
    <content type="html"><![CDATA[<h3>Feature</h3>
<p>Cloud Secure Web Proxy supports <a href="https://docs.cloud.google.com/secure-web-proxy/docs/tls-inspection-overview">TLS inspection</a>, which helps you intercept the TLS traffic, inspect the encrypted request, and enforce security policies. This feature is supported in Preview.</p>
]]>
    </content>
  </entry>

  <entry>
    <title>October 31, 2022</title>
    <id>tag:google.com,2016:secure-web-proxy-release-notes#October_31_2022</id>
    <updated>2022-10-31T00:00:00-07:00</updated>
    <link rel="alternate" href="https://docs.cloud.google.com/secure-web-proxy/docs/release-notes#October_31_2022"/>
    <content type="html"><![CDATA[<h3>Feature</h3>
<p><a href="https://docs.cloud.google.com/secure-web-gateway/docs/overview">Cloud SWG</a> is available in <a href="https://developers.google.com/maps/launch-stages#preview">Preview</a>. Cloud SWG provides a secure web gateway that helps you secure egress web traffic (HTTP/S). Contact your sales representative to sign up and use Cloud SWG.</p>
]]>
    </content>
  </entry>

</feed>
