As long as there is DNS resolution and network connectivity to the domain controllers, it should not matter whether they are in GCP or On-prem. You would also need to enable firewall rules to permit LDAP and Kerberos to the domain controllers from GCP.