July 27, 2026
See the product overview to learn about the features of Distributed Cloud.
Backup and restore
- Added the
maxConcurrencyattribute in thespecfield of theClusterBackupPlanandVirtualmachineBackupPlancustom resources. For more information, see Plan backups and Create a scheduled backup plan.
Cluster management
- Added support for creating, deleting, editing, and viewing standard Kubernetes clusters in the GDC console.
Networking
- Added support for configuring explicit deny project network policies as a Preview feature to restrict connectivity between workloads and services in different projects or CIDR ranges.
Virtual machines
Added a
taintspatch to theOrganizationZonalConfigresource for high performance computing (HPC) optimizations.Added support for NVIDIA GPU driver installation on Windows VMs.
Cluster management
- Kubernetes cluster deletion stops responding because a LUKS secret remains stuck in the terminating namespace.
Harbor
- The
gdcloud harbor backup-planscommand group is missing theupdateanddeletecommands, returning acommand not founderror when run.
Infrastructure as code
- There are reconciliation errors during an upgrade from 1.15.2 or later.
Monitoring
Cortex
VirtualServiceandIstioAuthorizationResourceresources remain in the cluster after a project is deleted.Certificate secrets are leaked when deleting a
MonitoringTarget.The Grafana dashboard link from a standard cluster details page in the GDC console incorrectly redirects you to the
platform-obsdashboard instead of loading data for the selected project.You can safely ignore or disable certain high-frequency alerts.
Security Information and Event Management (SIEM)
- Subcomponent
siem-aas-globalfails to reconcile in the org management plane.
Storage
Default keep lists filter out required metrics from Grafana.
Dual-zone buckets can't be deleted from the console.
Upgrade
The
sarpreflight upgrade check fails ifgdcloud system container-registry load-ociis run with--trigger-signature-verification=true, because both the command and the organization upgrade preflight check createartifact-signature-verificationjobs in thepackage-validation-systemnamespace.While upgrading to 1.16.2, the
atat-invoice-exportandatat-portfoliosubcomponents in therootnamespace might enter aReconciliationErrorstate.
Vertex AI
- Vertex AI Service Usage dashboards display a
No datastate because the PromQL queries contain restrictive filters for NVIDIA resources and Workbench labels that might not be present in the environment.
Vulnerability management
- During an upgrade from 1.16.1 to 1.16.2, the
lcm.private.gdc.goog/opsserviceslabel is removed from OIRv2opsservicesAPIs.
Documentation
- Stale documentation shipped with the product release.
GDC console
- Documentation hosted in the GDC console shows a 404 error.
gdcloud CLI
- Running any gdcloud CLI command prints an uninitialized feature flag warning.
Networking
- Enabling Cloud NAT on a VM prevents SSH connections using the GDC console UI.
Network Time Protocol (NTP)
- When deploying OIRv2 management switches, NTP configuration and encryption might not apply to the running configuration.
Servers
- Bootstrapper installation fails during file system configuration with a
matched no diskerror.
Storage
- The ONTAP S3 event audit logging is disabled.
Ticketing system
- The
ts-app-server-1pod restarts periodically.
Virtual machines
VM creation with types
a3-ultragpu-8ganda4-ultragpu-8gon a newly reprovisioned server fails with errors.gpu-controller-controller-manager podenters anImagePullBackOffstate during upgrade to release 1.16.1.
Vulnerability management:
- Vulnerability management subcomponents and system
UserAccountSSH key generation might get stuck due to a container runtime deadlock and Helm parameter cache poisoning.
Version updates:
- The Google Distributed Cloud for bare metal version is updated to 1.32.1300-gke.46 to apply the latest security patches and important updates.
Database services
- The Database Service for PostgreSQL is now powered by AlloyDB Omni. Database Service for AlloyDB Omni will no longer be available as a standalone managed service. Instead, customers looking to use AlloyDB Omni as a managed service should transition to the Database Service for PostgreSQL, which is powered by AlloyDB Omni. Additionally, Database Service for Oracle, a managed offering, is deprecated but the option to self-manage Oracle deployments remains fully supported. For more information on self-managing Oracle databases, refer to the solution guides. To support your planning, starting June 29, 2026 and ending on June 29, 2027, we are providing a 12-month discontinuation period for Database Service for AlloyDB Omni and Database Service for Oracle.
Virtual machines
- Distributed Cloud deprecates enabling external access using
VirtualMachineExternalAccessduring VM creation in the GDC console. To manage external networking, create an External Load Balancer (ELB) for ingress and a Cloud NAT Gateway for egress.