AWS Instance Discovery
Secret Server can now scan for instance resources in AWS. You can add this ability in the scanner settings section or through the wizard.
-
Create and AWS discovery source. See Enabling AWS Discovery.
-
Navigate to Admin > Discovery:
-
Click the Create Discovery Source dropdown list and select AWS (Amazon Web Services). The AWS Discovery Source wizard Overview page appears:
-
Click the Next button. The Discovery Source Name page appears:
-
Type the name of the AWS discovery source in the Discovery Source Name text box.
-
Click the Next button. The Site page appears:
-
Click the Add Site list box to select the site.
-
Click the Next button. AWS Service Account Scanner page appears:
-
Click the check boxes for the scanners you desire.
-
Click the Next button.
-
Click to select the Scan AWS Instances check box.
-
Type the regions you wish to scan for instances. The regions must be listed in a comma-delimited list for instances to be discovered.
See Regions, Availability Zones, and Local Zones for more information on AWS regions. -
Click to select the check boxes for the scanners you desire:
-
AWS Windows Machine Scanner: This is a machine scanner that scans each region and pulls all of the AWS Windows OS VM instances.
-
AWS Machine (Non-Windows) Scanner: This is a machine scanner that scans each region and pulls all of the AWS Non-Windows OS VM instances.
-
-
Click the Next button. The Credential Secrets page appears:
-
Click the Add Secret link. The Select a Secret popup appears:
-
Navigate the folder tree and select the secret you created earlier. As soon as you select the check box, the popup disappears and the secret appears under the Add Secret link.
-
Click the Finish button.