---
title: "Google Cloud Platform"
canonical: "https://docs.infoblox.com/space/UniversalAssetInsights/1501397481/Google%20Cloud%20Platform"
format: markdown
---
> ⚠️ Discovery data updates for DNS and IPAM are not supported if your account is configured with only the Infoblox Threat Defense license entitlement.

There are multiple pre-requisite configuration steps involved in configuring GCP before configuring Universal Asset Insights in the Infoblox Portal. Failing to follow the pre-requisite configuration stages in GCP will lead to errors. Follow each step shown in the flowchart. 

> ⚠️ Before creating a new Google Cloud Platform discovery configuration, you must clean-up the stale associations of endpoints, rules, and forward zones in the Infoblox Portal after deleting an existing discovery sync configuration.

The following diagram shows various configuration steps. To access detailed information about a specific step, simply click on the corresponding step:

![t_GCP_decision_final.drawio.png](media://f47b6474-9589-440f-a184-e81678d2cec9)

> ⚠️ To discover all resources linked to Shared VPCs, the discovery service account must have project-level read access for:
> ⚠️ 
> ⚠️ - The Shared VPC Host Project
> ⚠️ - All Service Projects attached to the Shared VPC
> ⚠️ 
> ⚠️ Since service projects may span subfolders, granting permissions project-by-project is impractical and error prone. Assign permissions at the Folder level or Organization level, if appropriate.


> Macro (excerpt)
> 
> > Macro (drawio)

The topics related to each step are available as follows:

1. [Configure Permissions](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/684492268).
2. [Create a Custom Role](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneDDI/pages/847184633).

To create a network discovery configuration for Google Cloud Platform (GCP), complete the following:

- Go to **Integrations > Discovery > Cloud.**
- Click **Create > GCP**.

> ℹ️ Before configuring discovery for Akamai, you must create credentials. For more information, see *[Creating Google Cloud Platform Credentials](https://infoblox-docs.atlassian.net/wiki/spaces/UniversalAssetInsights/pages/1689618634)*.

> ⚠️ When a provider discovery job is deleted in Universal DDI, the DNS zone that was synchronized through that job remains in its original DNS view (for example, *default*), but it is no longer linked to any cloud provider and it will no longer participate in cloud synchronization. If a new discovery job is later created using the same DNS view name, UDDI automatically generates a new provider-linked DNS view (for example, *default-1*) to preserve the integrity of provider associations. To ensure that DNS record updates continue to synchronize with the cloud provider, administrators must add or modify records within the zone that resides under the active provider-linked view (such as *default-1*), rather than in the old, unsynchronized view (*default*).

Configure the following settings in the wizard:

> Macro (children)