Manual Onboarding
Before you onboard the AWS application manually, you must perform a set of configuration steps. These configuration steps are required only if you plan to onboard AWS in API mode. If you plan to onboard AWS in inline mode, skip to Onboarding steps.
To get started, sign in to the AWS console (
http://aws.amazon.com
). Then, perform these configuration steps.
- Step 1 - Create an IAM role for Lookout Secure Cloud Access
- Step 2 - Create a Cloud Trail
- Step 3 - Create Simple Queue Service (SQS)
- Step 4 - Configure Event Notifications for the Cloud Trail Bucket
- Step 5 - Create an Identity Access Management (IAM) Monitor policy
- Step 6 - Create an IAM DLP policy
- Step 7 - Create an IAM CSPM policy
- Step 8 - Create an IAM KMS policy
- Step 9 - Attach the policies to the IAM role