Option 1: Use Network Sensor CloudFormation Template

A CloudFormation template is provided to simplify deployment of Network Sensor. You can access the template by clicking here: https://rapid7-cloudformation-templates.s3.amazonaws.com/sensor/Network_Sensor_Cloudformation.json.

Hands-free option

Rapid7 recommends using the Network Sensor CloudFormation template to deploy the Network Sensor for AWS. This is the most automated deployment option and will give you the most hands-free experience.

The CloudFormation template creates the following resources for you:

  • Sensor EC2 instance with:
    • Size t3.xlarge
    • Amazon Linux2
    • 2 Network Interfaces (Platform Comms and Mirror)
  • A Mirror Filter
  • A Mirror Target
  • Various tags to help identify resources

When the instance launches, it installs the Network Sensor automatically.

To deploy the CloudFormation template, follow these steps:

  1. Sign in to your AWS Console.
  2. From the “Services” dropdown, select the CloudFormation page.
  3. In the top left corner, click the Create Stack button.

CloudFormation Create Stack

  1. On the “Select Template” page, select the “Specify an Amazon S3 Template URL” option at the bottom of the page.
  2. Enter the following value: https://rapid7-cloudformation-templates.s3.amazonaws.com/sensor/Network_Sensor_Cloudformation.json

CloudFormation Create Stack URL

  1. Click the Next button.
  2. Populate the form with the values defined in the required resources.

Specify Stack Details

  1. On the “Options” page, you can change any details as desired.
  2. Click the Next button when you’re ready.
  3. On the “Review” page, review your configuration options.
  4. Select Create Stack.

The following shows the stack creation is complete:

Network Sensor

  1. Wait for the stack creation to complete.

Complete your configuration

Now that you've deployed the sensor using the CloudFormation template, all you have to do is complete the sensor configuration in Insight Data Collection Management.