---
title: "Network Policy Generally Available on Google GKE!"
source: "https://www.tigera.io/blog/network-policy-google-gke-general-availability/"
---

[Company Blog](https://www.tigera.io/category/company-blog/)

[Technical Blog](https://www.tigera.io/category/technical-blog/)

# Network Policy Generally Available on Google GKE!

By [Andrew Randall](https://www.tigera.io/blog/author/andrewrandall/) on Mar 20, 2018 • 2 min read

A best practice for securely deploying Kubernetes applications is to [enforce network policy](http://blog.kubernetes.io/2017/10/enforcing-network-policies-in-kubernetes.html). [Google’s announcement](http://cloudplatform.googleblog.com/2018/03/Kubernetes-Engine-network-policy-is-now-generally-available.html) today that [network policy](http://kubernetes.io/docs/concepts/services-networking/network-policies/) for Google Kubernetes Engine (GKE) using Calico network policy is now generally available (GA) is a huge step forward for Kubernetes security in the cloud.

Network policy is an important tool that provides micro-segmentation for Kubernetes-based applications. Networking policy underpins a “[zero trust](https://www.tigera.io/learn/guides/zero-trust/)” networking model allowing only necessary actions and connections for a workload while blocking anything else.

If you want practical guidance on how to use [Calico network policy](https://www.tigera.io/blog/calico-network-policy-comes-to-kubernetes/), I suggest reading a blog series on securing host endpoints that Cody McCain, one of Tigera’s solution architects, put together (make certain to read parts [one](https://www.tigera.io/blog/securing-host-endpoints-with-project-calico/), [two](https://www.tigera.io/blog/securing-host-endpoints-with-project-calico-part-2-1e773e56c92d/) and [three](https://www.tigera.io/blog/securing-host-endpoints-with-calico-part-3/)).

As the team behind Product Calico, we have worked long and hard with Google to deliver GKE support for network policy based on Calico.  We are delighted that to have passed all the hurdles to get to general availability status, with the peace of mind that creates for the most demanding users who need proven, well tested and supported solutions.

For enterprises requiring secure application connectivity including hierarchical policy management for their network policy, you should check out [Tigera Secure](https://www.tigera.io/tigera-products/compare-products/).  Tigera Secure delivers zero trust security, operational simplicity along with enterprise control and compliance for Kubernetes environments including on-premises deployments and GKE.

[Partner/Integration](https://www.tigera.io/tags/partner-integration/)[Products](https://www.tigera.io/tags/products/)[Announcements](https://www.tigera.io/tags/announcements/)

## Related posts

[![EU Cyber Resilience Act: Europe Just Put Your AI Agents on a 24-Hour Clock](https://www.tigera.io/app/uploads/2026/10/EU-Cyber-Resilience-Act-AI-Agents-featured.png)](https://www.tigera.io/blog/eu-cyber-resilience-act-europe-just-put-your-ai-agents-on-a-24-hour-clock/)

#### [EU Cyber Resilience Act: Europe Just Put Your AI Agents on a 24-Hour Clock](https://www.tigera.io/blog/eu-cyber-resilience-act-europe-just-put-your-ai-agents-on-a-24-hour-clock/)

By [Alister Baroi](https://www.tigera.io/blog/author/alister-baroi/)
on Oct 5, 2026

In short, the EU Cyber Resilience Act (CRA) puts binding cybersecurity requirements on any software sold as a product in the EU, and it does not carve out AI agents. Since 11th September 2026, any...

[Read more](https://www.tigera.io/blog/eu-cyber-resilience-act-europe-just-put-your-ai-agents-on-a-24-hour-clock/)

[![Meet Mylo: An AI-native way to work with Calico](https://www.tigera.io/app/uploads/2026/09/Meet-Mylo-An-AI-native-way-to-work-with-Calico.png)](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

#### [Meet Mylo: An AI-native way to work with Calico](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

By [Phil DiCorpo](https://www.tigera.io/blog/author/phil-dicorpo/)
on Sep 3, 2026

A library of Calico tools and skills — delivered through the Calico MCP Server What if your hardest network question took ten minutes instead of ten days? Anyone who has operated Kubernetes networking at scale...

[Read more](https://www.tigera.io/blog/meet-mylo-an-ai-native-way-to-work-with-calico/)

[![The Safest Place to Run an AI Agent Is On a Cluster That Doesn’t Trust It](https://www.tigera.io/app/uploads/2026/08/The-Safest-Place-to-Run-an-AI-Agent-Is-On-a-Cluster-That-Doesnt-Trust-It.png)](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

#### [The Safest Place to Run an AI Agent Is On a Cluster That Doesn’t Trust It](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

By [Alister Baroi](https://www.tigera.io/blog/author/alister-baroi/)
on Aug 27, 2026

Every organization running AI agents has already made a hosting decision. Most made it by accident. The sales team switched on the agent built into their CRM. Engineering is piloting a coding agent in a...

[Read more](https://www.tigera.io/blog/the-safest-place-to-run-an-ai-agent-is-on-a-cluster-that-doesnt-trust-it/)

<!-- plugin=object-cache-pro client=phpredis metric#hits=6164 metric#misses=17 metric#hit-ratio=99.7 metric#bytes=2215649 metric#prefetches=0 metric#store-reads=408 metric#store-writes=18 metric#store-hits=421 metric#store-misses=6 metric#sql-queries=36 metric#ms-total=1580.27 metric#ms-cache=94.59 metric#ms-cache-avg=0.2226 metric#ms-cache-ratio=6.0 -->
