Onboarding steps
- From the Management Console, select Administration > App Management and click New.
- Select GCP from the prompt.
To find an app, enter the first few characters of the app name and ten select the app from the search results.
- Enter a Name.The name must include only alphanumeric characters, with no special characters other than the underscore, and no spaces.
- (Optional) Enter a Description.
- Select protection models.
- API Access
- Cloud Security Posture
- Enter configuration information.The fields available depend on the protection models you selected.
- If you selected API Access, enter:
- Client Id
-
Client Secret
This is the information created during the GCP pre-onboarding configuration steps. To review those steps, go to Configuration steps.
Be sure to enter the same information in the Client ID and Client Secret fields here.
- If you selected Cloud Security Posture, enter:
- Service Account Credentials (JSON) --The service account credentials for the JSON file you downloaded in the configuration steps.
-
Sync Interval (1-24 Hrs) - How often CSPM will retrieve information from the cloud and refresh the inventory. Enter a number.
- If you selected API Access, enter:
- Click Authorize.
- If you selected only Cloud Security Posture, the Summary page appears. Review it and save the new GCP application to complete onboarding.
-
If you selected API Access or both API Access and Cloud Security Posture, enter your GCP account credentials when prompted.
If you entered an invalid client secret or client ID on the Configuration page, an error message appears after you click Authorize. Review your client secret and client ID entries, make any corrections, and click Authorize again. Once the system recognizes the entries as valid, enter your GCP login credentials when prompted.
After your GCP login credentials have been accepted, save the new GCP cloud application to complete onboarding.