gcloud container fleet policycontroller deployment set Stay organized with collections Save and categorize content based on your preferences.
- NAME
- gcloud container fleet policycontroller deployment set - sets configuration of the Policy Controller components
- SYNOPSIS
gcloud container fleet policycontroller deployment setDEPLOYMENTPROPERTYVALUE[--effect=EFFECT][--all-memberships| [--memberships=[MEMBERSHIPS,…] :--location=LOCATION]][GCLOUD_WIDE_FLAG …]
- DESCRIPTION
- Customizes on-cluster components of Policy Controller. Supported properties maybe set with this command, or removed with 'remove'. These components are managedas individual kubernetes deployments (e.g. 'admission') in the gatekeeper-systemnamespace.
When setting cpu or memory limits and requests, Kubernetes-standard resourceunits are used.
All properties set using this command will overwrite previous properties, withthe exception of tolerations which can only be added, and any number may beadded. To edit a toleration, use 'remove' to first delete it, and then 'set' thedesired toleration.
- EXAMPLES
- To set the replica count for a component:
gcloudcontainerfleetpolicycontrollerdeploymentsetadmissionreplica-count3To set the replica count for a component across all fleet memberships:
gcloudcontainerfleetpolicycontrollerdeploymentsetadmissionreplica-count3--all-membershipsTo set a toleration with key 'my-key' on a component (which is an 'Exists'operator):
gcloudcontainerfleetpolicycontrollerdeploymentsetadmissiontolerationmy-keyTo set a toleration with key 'my-key' and 'my-value' on a component (which is an'Equal' operator):
gcloudcontainerfleetpolicycontrollerdeploymentsetadmissiontolerationmy-key=my-valueTo set a toleration with key 'my-key' and 'my-value' on a component, along withthe effect 'NoSchedule' (which is an 'Equal' operator):
gcloudcontainerfleetpolicycontrollerdeploymentsetadmissiontolerationmy-key=my-value--effect=NoScheduleTo set a memory limit:
gcloudcontainerfleetpolicycontrollerdeploymentsetauditmemory-limit4GiTo set a memory request:
gcloudcontainerfleetpolicycontrollerdeploymentsetmutationmemory-request2GiTo set a cpu limit:
gcloudcontainerfleetpolicycontrollerdeploymentsetadmissioncpu-limit500mTo set a cpu request:
gcloudcontainerfleetpolicycontrollerdeploymentsetauditcpu-request250mTo set anti-affinity to achieve high availability on the mutation deployment:
gcloudcontainerfleetpolicycontrollerdeploymentsetmutationpod-affinityanti - POSITIONAL ARGUMENTS
DEPLOYMENT- The PolicyController deployment component (e.g. "admission", "audit" or"mutation") upon which to set configuration.
PROPERTY- Property to be set.
VALUE- The value to set the property to. Valid input varies based on the property beingset.
- FLAGS
--effect=EFFECT- Applies only to "toleration" property.
EFFECTmust beone of:NoSchedule,PreferNoSchedule,NoExecute. - Membership flags.
At most one of these can be specified:
--all-memberships- If supplied, apply to all Policy Controllers memberships in the fleet.
- Or at least one of these can be specified:
- Membership resource - The group of arguments defining one or more memberships.The arguments in this group can be used to specify the attributes of thisresource. (NOTE) Some attributes are not given arguments in this group but canbe set in other ways.
To set the
projectattribute:- provide the argument
--membershipson the command line with a fullyspecified name; - provide the argument
--projecton the command line; - set the property
core/project.
- provide the argument
--memberships=[MEMBERSHIPS,…]- IDs of the memberships or fully qualified identifiers for the memberships.
To set the
membershipsattribute:- provide the argument
--membershipson the command line.
This flag argument must be specified if any of the other arguments in this groupare specified.
- provide the argument
--location=LOCATION- Location for the memberships.
To set the
locationattribute:- provide the argument
--membershipson the command line with a fullyspecified name; - provide the argument
--locationon the command line; - set the property
gkehub/location.
- provide the argument
- Membership resource - The group of arguments defining one or more memberships.The arguments in this group can be used to specify the attributes of thisresource. (NOTE) Some attributes are not given arguments in this group but canbe set in other ways.
- GCLOUD WIDE FLAGS
- These flags are available to all commands:
--access-token-file,--account,--billing-project,--configuration,--flags-file,--flatten,--format,--help,--impersonate-service-account,--log-http,--project,--quiet,--trace-token,--user-output-enabled,--verbosity.Run
$gcloud helpfor details. - NOTES
- These variants are also available:
gcloudalphacontainerfleetpolicycontrollerdeploymentsetgcloudbetacontainerfleetpolicycontrollerdeploymentset
Except as otherwise noted, the content of this page is licensed under theCreative Commons Attribution 4.0 License, and code samples are licensed under theApache 2.0 License. For details, see theGoogle Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.
Last updated 2026-01-21 UTC.