Set up and manage cloud accounts
You can add a cloud from the Data Connectors > Cloud Accounts. Select the CSP you want to onboard and follow the on-screen instructions to configure and connect the account:
Organization support
Cloud Security (InsightCloudSec) also supports adding an organization for AWS, Azure, and GCP. Adding an organization is a process that is similar to adding a cloud account.
Managing existing cloud accounts
After you connect one or more cloud accounts, you can manage and review specific cloud account details.
View cloud accounts
- Go to Data Connectors > Cloud Accounts > Listing.
- To view details for a specific cloud account, including accounts that are part of a Cloud Organization, click the account name.
Remove cloud accounts
Users with the appropriate permissions can remove a cloud account from Cloud Security (InsightCloudSec) on the Cloud Listing page. If the account you’re removing is part of an existing CSP Organization that is recognized by Cloud Security (InsightCloudSec), the account ID will be automatically added to that organization’s skip list so the account will not be harvested in the future.
Removing an account does not delete it
Removing an account will only remove visibility of it from Cloud Security (InsightCloudSec). To permanently remove a cloud account, you’ll need to delete it using the appropriate console or API.
To remove an account from Cloud Security (InsightCloudSec):
- Go to Data Connectors > Cloud Accounts and click the account you want to remove.
- On the Settings tab, click Remove Cloud Account to remove the target cloud account from the Cloud Security (InsightCloudSec) application.
Cloud Organizations
In Cloud Security (InsightCloudSec), the Organizations tab is where you manage your connected cloud service provider-based organization(s), available from Data Connectors > Cloud Accounts and click the Organizations tab. This section of the tool allows you to add and remove CSP-related Organizations and update configuration information for existing ones.
Cloud Organizations should not be confused with the Cloud Security (InsightCloudSec)-specific Organizations capability that allows for multi-tenant functionality available under Administration > System Administration > Cloud Security Organizations.
Account Discovery
After completing the onboarding wizard for an organization, Cloud Security (InsightCloudSec) can automatically detect its member accounts and then you can automatically onboard them. Review the CSP-specific onboarding pages for more information:
Modifying an organization
To modify account discovery or configuration details:
- Go to Data Connectors > Cloud Accounts > Organizations.
- Click Action next to the organization you want to modify.
- Click Manage Organization.
- Modify the fields as necessary.
- Click Save.
Delete an organization
This will not delete the Organization within the associated Cloud Service Provider. It will just stop harvesting information for the Organization (and its child accounts) and delete it from Cloud Security (InsightCloudSec).
- Go to Data Connectors > Cloud Accounts > Organizations.
- Click Action next to the organization you want to delete.
- Click Delete Organization.