gcloud beta network-security security-profile-groups create

NAME
gcloud beta network-security security-profile-groups create - create a new Security Profile Group
SYNOPSIS
gcloud beta network-security security-profile-groups create(SECURITY_PROFILE_GROUP :--location=LOCATION--organization=ORGANIZATION)([--custom-intercept-profile=CUSTOM_INTERCEPT_PROFILE :--custom-intercept-profile-location=CUSTOM_INTERCEPT_PROFILE_LOCATION--custom-intercept-profile-organization=CUSTOM_INTERCEPT_PROFILE_ORGANIZATION] [--custom-mirroring-profile=CUSTOM_MIRRORING_PROFILE :--custom-mirroring-profile-location=CUSTOM_MIRRORING_PROFILE_LOCATION--custom-mirroring-profile-organization=CUSTOM_MIRRORING_PROFILE_ORGANIZATION] [--threat-prevention-profile=THREAT_PREVENTION_PROFILE :--threat-prevention-profile-location=THREAT_PREVENTION_PROFILE_LOCATION--threat-prevention-profile-organization=THREAT_PREVENTION_PROFILE_ORGANIZATION] [--url-filtering-profile=URL_FILTERING_PROFILE :--url-filtering-profile-location=URL_FILTERING_PROFILE_LOCATION--url-filtering-profile-organization=URL_FILTERING_PROFILE_ORGANIZATION])[--async][--description=DESCRIPTION][--labels=[KEY=VALUE,…]][GCLOUD_WIDE_FLAG]
DESCRIPTION
(BETA) Create a new Security Profile Group with the given name.
EXAMPLES
To create a Security Profile Group with the namemy-security-profile-group, with a threat prevention profile using--threat-prevention-profile flag and optional description asoptional description, run:
gcloudbetanetwork-securitysecurity-profile-groupscreatemy-security-profile-group--organization=1234--location=global--threat-prevention-profile=`organizations/1234/locations/global/securityProfiles/my-security-profile`--description='optional description'
POSITIONAL ARGUMENTS
Security profile group resource - Security Profile Group Name. The arguments inthis group can be used to specify the attributes of this resource. This resourcecan be one of the following types: [security_profile_group].

This must be specified.

SECURITY_PROFILE_GROUP
ID of the security_profile_group or fully qualified identifier for thesecurity_profile_group.

To set thesecurity_profile_group attribute:

  • provide the argumentsecurity_profile_group on the command line.

This positional argument must be specified if any of the other arguments in thisgroup are specified.

--location=LOCATION
location of the security_profile_group - Global.

To set thelocation attribute:

  • provide the argumentsecurity_profile_group on the command linewith a fully specified name;
  • provide the argument--location on the command line.
--organization=ORGANIZATION
Organization ID of Security Profile Group

To set theorganization attribute:

  • provide the argumentsecurity_profile_group on the command linewith a fully specified name;
  • provide the argument--organization on the command line.
REQUIRED FLAGS
At least one of these must be specified:
Custom intercept profile resource - Path to Custom Intercept Profile resource.The arguments in this group can be used to specify the attributes of thisresource. This resource can be one of the following types:[custom_intercept_profile].
--custom-intercept-profile=CUSTOM_INTERCEPT_PROFILE
ID of the custom_intercept_profile or fully qualified identifier for thecustom_intercept_profile.

To set thename attribute:

  • provide the argument--custom-intercept-profile on the commandline.

This flag argument must be specified if any of the other arguments in this groupare specified.

--custom-intercept-profile-location=CUSTOM_INTERCEPT_PROFILE_LOCATION
Location of the custom_intercept_profile. NOTE: Onlyglobalsecurity profiles are supported.To set thelocation attribute:
  • provide the argument--custom-intercept-profile on the command linewith a fully specified name;
  • provide the argument--custom-intercept-profile-location on thecommand line;
  • provide the argument--location on the command line;
  • provide the argumentsecurity_profile_group on the command linewith a fully specified name.
--custom-intercept-profile-organization=CUSTOM_INTERCEPT_PROFILE_ORGANIZATION
Organization ID of the Security Profile.

To set theorganization attribute:

  • provide the argument--custom-intercept-profile on the command linewith a fully specified name;
  • provide the argument--custom-intercept-profile-organization on thecommand line;
  • provide the argument--organization on the command line;
  • provide the argumentsecurity_profile_group on the command linewith a fully specified name.
Custom mirroring profile resource - Path to Custom Mirroring Profile resource.The arguments in this group can be used to specify the attributes of thisresource. This resource can be one of the following types:[custom_mirroring_profile].
--custom-mirroring-profile=CUSTOM_MIRRORING_PROFILE
ID of the custom_mirroring_profile or fully qualified identifier for thecustom_mirroring_profile.

To set thename attribute:

  • provide the argument--custom-mirroring-profile on the commandline.

This flag argument must be specified if any of the other arguments in this groupare specified.

--custom-mirroring-profile-location=CUSTOM_MIRRORING_PROFILE_LOCATION
Location of the custom_mirroring_profile. NOTE: Onlyglobalsecurity profiles are supported.To set thelocation attribute:
  • provide the argument--custom-mirroring-profile on the command linewith a fully specified name;
  • provide the argument--custom-mirroring-profile-location on thecommand line;
  • provide the argument--location on the command line;
  • provide the argumentsecurity_profile_group on the command linewith a fully specified name.
--custom-mirroring-profile-organization=CUSTOM_MIRRORING_PROFILE_ORGANIZATION
Organization ID of the Security Profile.

To set theorganization attribute:

  • provide the argument--custom-mirroring-profile on the command linewith a fully specified name;
  • provide the argument--custom-mirroring-profile-organization on thecommand line;
  • provide the argument--organization on the command line;
  • provide the argumentsecurity_profile_group on the command linewith a fully specified name.
Threat prevention profile resource - Path to Threat Prevention Profile resource.The arguments in this group can be used to specify the attributes of thisresource. This resource can be one of the following types:[threat_prevention_profile].
--threat-prevention-profile=THREAT_PREVENTION_PROFILE
ID of the threat_prevention_profile or fully qualified identifier for thethreat_prevention_profile.

To set thename attribute:

  • provide the argument--threat-prevention-profile on the commandline.

This flag argument must be specified if any of the other arguments in this groupare specified.

--threat-prevention-profile-location=THREAT_PREVENTION_PROFILE_LOCATION
Location of the threat_prevention_profile. NOTE: Onlyglobalsecurity profiles are supported.To set thelocation attribute:
  • provide the argument--threat-prevention-profile on the commandline with a fully specified name;
  • provide the argument--threat-prevention-profile-location on thecommand line;
  • provide the argument--security-profile-location on the commandline;
  • provide the argument--location on the command line;
  • provide the argumentsecurity_profile_group on the command linewith a fully specified name.
--threat-prevention-profile-organization=THREAT_PREVENTION_PROFILE_ORGANIZATION
Organization ID of the Security Profile.

To set theorganization attribute:

  • provide the argument--threat-prevention-profile on the commandline with a fully specified name;
  • provide the argument--threat-prevention-profile-organization onthe command line;
  • provide the argument--security-profile-organization on the commandline;
  • provide the argument--organization on the command line;
  • provide the argumentsecurity_profile_group on the command linewith a fully specified name.
Url filtering profile resource - Path to URL Filtering Profile resource. Thearguments in this group can be used to specify the attributes of this resource.This resource can be one of the following types: [url_filtering_profile].
--url-filtering-profile=URL_FILTERING_PROFILE
ID of the url_filtering_profile or fully qualified identifier for theurl_filtering_profile.

To set thename attribute:

  • provide the argument--url-filtering-profile on the command line.

This flag argument must be specified if any of the other arguments in this groupare specified.

--url-filtering-profile-location=URL_FILTERING_PROFILE_LOCATION
Location of the url_filtering_profile. NOTE: Onlyglobal securityprofiles are supported.To set thelocation attribute:
  • provide the argument--url-filtering-profile on the command linewith a fully specified name;
  • provide the argument--url-filtering-profile-location on thecommand line;
  • provide the argument--location on the command line;
  • provide the argumentsecurity_profile_group on the command linewith a fully specified name.
--url-filtering-profile-organization=URL_FILTERING_PROFILE_ORGANIZATION
Organization ID of the Security Profile.

To set theorganization attribute:

  • provide the argument--url-filtering-profile on the command linewith a fully specified name;
  • provide the argument--url-filtering-profile-organization on thecommand line;
  • provide the argument--organization on the command line;
  • provide the argumentsecurity_profile_group on the command linewith a fully specified name.
OPTIONAL FLAGS
--async
Return immediately, without waiting for the operation in progress to complete.The default isFalse.
--description=DESCRIPTION
Brief description of the security profile group
--labels=[KEY=VALUE,…]
List of label KEY=VALUE pairs to add.

Keys must start with a lowercase character and contain only hyphens(-), underscores (_), lowercase characters, andnumbers. Values must contain only hyphens (-), underscores(_), lowercase characters, and numbers.

GCLOUD WIDE FLAGS
These flags are available to all commands:--access-token-file,--account,--billing-project,--configuration,--flags-file,--flatten,--format,--help,--impersonate-service-account,--log-http,--project,--quiet,--trace-token,--user-output-enabled,--verbosity.

Run$gcloud help for details.

NOTES
This command is currently in beta and might change without notice. Thesevariants are also available:
gcloudnetwork-securitysecurity-profile-groupscreate
gcloudalphanetwork-securitysecurity-profile-groupscreate

Except as otherwise noted, the content of this page is licensed under theCreative Commons Attribution 4.0 License, and code samples are licensed under theApache 2.0 License. For details, see theGoogle Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.

Last updated 2026-02-10 UTC.