- NAME
- 
- gcloud dns policies create - creates a new Cloud DNS policy
 
- SYNOPSIS
- 
- 
gcloud dns policies createPOLICY--description=DESCRIPTION--networks=[NETWORKS,…] [--alternative-name-servers=[NAME_SERVERS,…]] [--enable-dns64-all-queries] [--enable-inbound-forwarding] [--enable-logging] [--private-alternative-name-servers=[NAME_SERVERS,…]] [GCLOUD_WIDE_FLAG …]
 
- 
- DESCRIPTION
- This command creates a new Cloud DNS policy.
- EXAMPLES
- 
To create a new policy with minimal arguments, run:
gcloud dns policies create mypolicy --description='My new policy test policy 5' --networks=''To create a new policy with all optional arguments, run: gcloud dns policies create mypolicy --description='My new policy test policy 5' --networks=network1,network2 --alternative-name-servers=192.168.1.1,192.168.1.2 --enable-inbound-forwarding --enable-logging --enable-dns64-all-queries
- POSITIONAL ARGUMENTS
- 
- 
Policy resource - The policy to create. This represents a Cloud resource. (NOTE)
Some attributes are not given arguments in this group but can be set in other
ways.
To set the projectattribute:- 
provide the argument policyon the command line with a fully specified name;
- 
set the property core/project.
 This must be specified. - POLICY
- 
ID of the policy or fully qualified identifier for the policy.
To set the policyattribute:- 
provide the argument policyon the command line.
 
- 
provide the argument 
 
- 
provide the argument 
 
- 
Policy resource - The policy to create. This represents a Cloud resource. (NOTE)
Some attributes are not given arguments in this group but can be set in other
ways.
- REQUIRED FLAGS
- 
- --description=- DESCRIPTION
- A description of the policy.
- --networks=[- NETWORKS,…]
- The comma separated list of network names to associate with the policy.
 
- OPTIONAL FLAGS
- 
- --alternative-name-servers=[- NAME_SERVERS,…]
- List of alternative name servers to forward to. Non-RFC1918 addresses will forward to the target through the Internet.RFC1918 addresses will forward through the VPC.
- --enable-dns64-all-queries
- Specifies whether to allow networks bound to this policy to use DNS64 for IPv6-only VM instances.
- --enable-inbound-forwarding
- Specifies whether to allow networks bound to this policy to receive DNS queries sent by VMs or applications over VPN connections. Defaults to False.
- --enable-logging
- Specifies whether to enable query logging. Defaults to False.
- --private-alternative-name-servers=[- NAME_SERVERS,…]
- List of alternative name servers to forward to. All addresses specified for this parameter will be reached through the VPC.
 
- GCLOUD WIDE FLAGS
- 
These flags are available to all commands: --access-token-file,--account,--billing-project,--configuration,--flags-file,--flatten,--format,--help,--impersonate-service-account,--log-http,--project,--quiet,--trace-token,--user-output-enabled,--verbosity.Run $ gcloud helpfor details.
- NOTES
- 
These variants are also available:
gcloud alpha dns policies creategcloud beta dns policies create
      gcloud dns policies create
  
  Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License, and code samples are licensed under the Apache 2.0 License. For details, see the Google Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.
Last updated 2025-06-10 UTC.