Rules: https://cloud.google.com/vpc/docs/firewalls#more_rules_default_vpc
Add them with gcloud
:
gcloud compute firewall-rules create default-allow-internal --allow tcp:0-65535,udp:0-65535,icmp \
--source-ranges="10.128.0.0/9" --priority=65534
gcloud compute firewall-rules create default-allow-ssh --allow tcp:22 --priority=65534
gcloud compute firewall-rules create default-allow-rdp --allow tcp:3389 --priority=65534
gcloud compute firewall-rules create default-allow-icmp --allow icmp --priority=65534