Configuration
After you successfully set up the Delinea Platform in the Google Cloud Platform, navigate back to the Delinea Platform:
-
Navigate to Discovery >Sources.
-
Select Create source. The Create discovery source page opens.
-
Select the Google Threat Protection option. Select Continue. The Integrate Google page opens.
-
In the GSuite admin email address field, enter an email address associated with a super admin account in Google. This account will be impersonated by the service accounts to read user data, and no credentials for this account are required.
-
Copy the Bucket Name created in the GCP platform, and add it in the Bucket name field.
-
(optional) If you have not created a GCP service account for integration, go to the vault and create a new GCP Secret using the “Google IAM Service Account Key” template .
-
If you have an existing secret or created a new one, select the Select button. The Share secret with ITP connector page opens.
-
Go to the All secrets option and select your secret.
In the Share secret with ITP connector page , in the Templates field, select the Google IAM Service Account Template Account Key so that you can see only the GCP Secrets.
-
Select your secret.
-
Next, select whether you want to turn off folder inheritance for this secret, allowing the Delinea ITDR service account (used by ITP integrations) to retrieve and access it.
-
Select Save in the Integrate Google page.