- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
02-21-2020 06:37 AM - last edited on 09-02-2020 10:59 AM by CHopson
Hi,
Can anyone direct me to a document or script that can be used to automate account onboarding whenever a new AWS account is created in the organisation. I have this on github but the seems to be the entire process of onboarding Prisma cloud;
03-23-2020 06:40 AM
Currently, there is no automated onboarding mechanism for AWS, which mimics our GCP capability.
This is in the works, but a timeframe has not been defined at this moment.
09-23-2022 09:43 AM
Hello,
Thank you for your question. Its been a while since you have asked but I wanted to make sure that I can answer this question for you.
Prisma Cloud now automatically updates your AWS Org by adding on the Cloud Accounts (child account) once the account has been added or created under your AWS Org.
During the process of an AWS Org onboarding, on the Select Member Accounts section. Make sure to select all. This will include all member accounts under your organization to be added to Prisma Cloud every time you update your ORG with child accounts. This choice can also be changed later as well.
Please note that when you remove an account from your Organization, that will also update on Prisma Cloud as well.
Hope this helps.
Regards,
09-23-2022 11:02 AM
It's documented here. https://docs.paloaltonetworks.com/prisma/prisma-cloud/prisma-cloud-admin/connect-your-cloud-platform...
I like BCastillo's advice too.
Don't forget to deploy an AWS Managed StackSet to your AWS master account.
That StackSet will be an AWS CloudFormationTemplate containing the twistlock IAM user and policy.
The StackSet should be configured to deploy with the AWSStackSetAdministrativeRole.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!