Info |
---|
This article explains how to add AWS accounts to Cloudaware using an AWS IAM role. Ensure you have the necessary permissions in AWS. |
...
Log in to Cloudaware account → Admin.
...
Find Amazon Organizations & Accounts. Click +N Configured CONFIGURED → +ADD AMAZON ACCOUNT:
...
Type AWS account name in the form. Select 'AWS IAM role' as authentication type.
a. Select AWS Partition:
...
b. Generate External ID:
...
Copy and save External ID required for Cloudaware IAM Role creation in AWS console.
c. Select the option for CloudFormation stack creation:
Quick launch |
---|
This option allows launching AWS CloudFormation stack with a pre-generated Cloudaware template. Click |
LAUNCH STACK to be redirected to AWS Console: |
Manual creation |
This option allows the manual creation of AWS CloudFormation stack. Click |
TEMPLATE to download* the CloudFormation template: *Download populated with account data - the template will contain your AWS Account data auto-populated, e.g. |
S3 bucket names |
account |
...
Log in to the AWS console:
Quick launch |
---|
Manual creation |
Note that Amazon S3 URL is pre-selected as Template source. The URL for Cloudaware template is auto-populated. Click Next.
Go to All Services → the section 'Management & Governance' → CloudFormation. Click Create Stack → With new resources (standard). |
Under 'Prerequisite - Prepare template', select Choose an existing template. Under 'Specify template', select Upload a template file →click Choose file |
and upload the Cloudaware template. Click Next. |
...
Specify stack details:
a. Provide Stack name
...
.
...
b. Fill in Parameters:
...
WHERE
CloudAware Role ARN
...
- leave it as is
CloudAware Role Name
...
- replace
auto-generate
with a meaningful name, e.g.
...
CloudawareRole
External ID
...
- paste External ID generated in the Cloudaware console (see step 3.b)
...
...
Set up tags and permissions, stack failure options, and advanced options if necessary.
...
Check the box I acknowledge that AWS CloudFormation might create IAM resources with custom names
...
. Click Next.
Review the stack details. Click Submit.
...
Note |
---|
Please allow some time for the stack to be created. |
...
Open the tab 'Outputs' for the created stack. Copy the IAM Role ARN value.
...
Go back to Cloudaware.
...
Paste Role ARN in the form. Click
...
CHECK:
...
Once validation is passed,click
...
SAVE.
Please allow some time for Cloudaware to collect your AWS data.