Configuration

After you successfully set up the Delinea Platform in the Google Cloud Platform, navigate back to the Delinea Platform:

  1. Navigate to Discovery >Sources.

  2. Select Create source. The Create discovery source page opens.

  3. Select the Google Threat Protection option. Select Continue. The Integrate Google page opens.

  4. In the GSuite admin email address field, enter an email address associated with a super admin account in Google. This account will be impersonated by the service accounts to read user data, and no credentials for this account are required.

  5. Copy the Bucket Name created in the GCP platform, and add it in the Bucket name field.

  6. (optional) If you have not created a GCP service account for integration, go to the vault and create a new GCP Secret using the “Google IAM Service Account Key” template .

  7. If you have an existing secret or created a new one, select the Select button. The Share secret with ITP connector page opens.

  8. Go to the All secrets option and select your secret.

    In the Share secret with ITP connector page , in the Templates field, select the Google IAM Service Account Template Account Key so that you can see only the GCP Secrets.

  9. Select your secret.

  10. Next, select whether you want to turn off folder inheritance for this secret, allowing the Delinea ITDR service account (used by ITP integrations) to retrieve and access it.

  11. Select Save in the Integrate Google page.