gcloud network-security intercept-deployments create

NAME
gcloud network-security intercept-deployments create - create an Intercept Deployment
SYNOPSIS
gcloud network-security intercept-deployments create(INTERCEPT_DEPLOYMENT :--location=LOCATION)(--forwarding-rule=FORWARDING_RULE :--forwarding-rule-location=FORWARDING_RULE_LOCATION)(--intercept-deployment-group=INTERCEPT_DEPLOYMENT_GROUP :--intercept-deployment-group-location=INTERCEPT_DEPLOYMENT_GROUP_LOCATION)[--async][--description=DESCRIPTION][--labels=[KEY=VALUE,…]][--max-wait=MAX_WAIT; default="20m"][GCLOUD_WIDE_FLAG]
DESCRIPTION
Create an intercept deployment. Successful creation of a deployment results in adeployment in ACTIVE state. Check the progress of deployment creation by usinggcloudnetwork-security intercept-deployments list.

For more examples, refer to the EXAMPLES section below.

EXAMPLES
To create an intercept deployment calledmy-deployment, in projectIDmy-project and zoneus-central1-a, run:
gcloudnetwork-securityintercept-deploymentscreatemy-deployment--project=my-project--location=us-central1-a--deployment-group-location=global--forwarding-rule=my-forwarding-rule--forwarding-rule-location=us-central1--intercept-deployment-group=my-deployment-group

OR

gcloudnetwork-securityintercept-deploymentscreatemy-deployment--project=my-project--location=us-central1-a--forwarding-rule=projects/my-project/regions/us-central1/forwardingRules/my-forwarding-rule--intercept-deployment-group=projects/my-project/locations/global/interceptDeploymentGroups/my-deployment-group

OR

gcloudnetwork-securityintercept-deploymentscreateprojects/my-project/locations/us-central1/interceptDeployments/my-deployment--forwarding-rule=projects/my-project/regions/us-central1/forwardingRules/my-forwarding-rule--intercept-deployment-group=projects/my-project/locations/global/interceptDeploymentGroups/my-deployment-group

OR

gcloudnetwork-securityintercept-deploymentscreateprojects/my-project/locations/us-central1/interceptDeployments/my-deployment--forwarding-rule=projects/my-project/regions/us-central1/forwardingRules/my-forwarding-rule--intercept-deployment-group=projects/my-project/locations/global/interceptDeploymentGroups/my-deployment-group--description="my-description"
POSITIONAL ARGUMENTS
Intercept deployment resource - Intercept Deployment. The arguments in thisgroup can be used to specify the attributes of this resource. (NOTE) Someattributes are not given arguments in this group but can be set in other ways.

To set theproject attribute:

  • provide the argumentINTERCEPT_DEPLOYMENT on the command line witha fully specified name;
  • provide the argument--project on the command line;
  • set the propertycore/project.

This must be specified.

INTERCEPT_DEPLOYMENT
ID of the intercept deployment or fully qualified identifier for the interceptdeployment.

To set thedeployment-id attribute:

  • provide the argumentINTERCEPT_DEPLOYMENT on the command line.

This positional argument must be specified if any of the other arguments in thisgroup are specified.

--location=LOCATION
Location of the intercept deployment.

To set thelocation attribute:

  • provide the argumentINTERCEPT_DEPLOYMENT on the command line witha fully specified name;
  • provide the argument--location on the command line.
REQUIRED FLAGS
ForwardingRule resource - Intercept Deployment Forwarding Rule. The arguments inthis group can be used to specify the attributes of this resource. (NOTE) Someattributes are not given arguments in this group but can be set in other ways.

To set theproject attribute:

  • provide the argument--forwarding-rule on the command line with afully specified name;
  • provide the argument--project on the command line;
  • set the propertycore/project.

This must be specified.

--forwarding-rule=FORWARDING_RULE
ID of the forwardingRule or fully qualified identifier for the forwardingRule.

To set theforwarding-rule-id attribute:

  • provide the argument--forwarding-rule on the command line.

This flag argument must be specified if any of the other arguments in this groupare specified.

--forwarding-rule-location=FORWARDING_RULE_LOCATION
The Cloud region for the forwardingRule.

To set theforwarding-rule-location attribute:

  • provide the argument--forwarding-rule on the command line with afully specified name;
  • provide the argument--forwarding-rule-location on the commandline.
Intercept deployment group resource - Intercept Deployment Group. The argumentsin this group can be used to specify the attributes of this resource. (NOTE)Some attributes are not given arguments in this group but can be set in otherways.

To set theproject attribute:

  • provide the argument--intercept-deployment-group on the commandline with a fully specified name;
  • provide the argument--project on the command line;
  • set the propertycore/project.

This must be specified.

--intercept-deployment-group=INTERCEPT_DEPLOYMENT_GROUP
ID of the intercept deployment group or fully qualified identifier for theintercept deployment group.

To set theid attribute:

  • provide the argument--intercept-deployment-group on the commandline.

This flag argument must be specified if any of the other arguments in this groupare specified.

--intercept-deployment-group-location=INTERCEPT_DEPLOYMENT_GROUP_LOCATION
Location of the intercept deployment group.

To set thelocation attribute:

  • provide the argument--intercept-deployment-group on the commandline with a fully specified name;
  • provide the argument--intercept-deployment-group-location on thecommand line;
  • provide the argumentnetworksecurity.projects.locations.interceptDeployments on thecommand line with a fully specified name.
OPTIONAL FLAGS
--async
Return immediately, without waiting for the operation in progress to complete.The default isTrue. Enabled by default, use--no-async to disable.
--description=DESCRIPTION
Description of the deployment.
--labels=[KEY=VALUE,…]
List of label KEY=VALUE pairs to add.

Keys must start with a lowercase character and contain only hyphens(-), underscores (_), lowercase characters, andnumbers. Values must contain only hyphens (-), underscores(_), lowercase characters, and numbers.

--max-wait=MAX_WAIT; default="20m"
Time to synchronously wait for the operation to complete, after which theoperation continues asynchronously. Ignored if --no-async isn't specified. See $gcloud topic datetimes forinformation on time formats.
GCLOUD WIDE FLAGS
These flags are available to all commands:--access-token-file,--account,--billing-project,--configuration,--flags-file,--flatten,--format,--help,--impersonate-service-account,--log-http,--project,--quiet,--trace-token,--user-output-enabled,--verbosity.

Run$gcloud help for details.

NOTES
These variants are also available:
gcloudalphanetwork-securityintercept-deploymentscreate
gcloudbetanetwork-securityintercept-deploymentscreate

Except as otherwise noted, the content of this page is licensed under theCreative Commons Attribution 4.0 License, and code samples are licensed under theApache 2.0 License. For details, see theGoogle Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.

Last updated 2025-08-19 UTC.