Onboarding AWS Organization - Terraform Style

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Onboarding AWS Organization - Terraform Style

L0 Member

Hello guys,

 

I'm looking for a way to onboard an AWS Organization using Terraform and bypass the need of using the old CloudFormation template.

So when deploying the CFT (for basic features) we get 4 custom policies + SecurityAudit attached to a "PrismaRole". I've seen that there was also a need to enable trust access at AWS Organization for CloudFormation. 

 

I've wanted to know if there's already someone who's automated Orga onboarding to Prisma by using Terraform, and if so, was kind of "Trust Access" is their to enable? (I've deployed the same resources created through CloudFormation by using Terraform, but I'm still unable to click on "Next" when onboarding the Org inside Prisma)

Thank you in advance 🙂

Syphax,

 

1 REPLY 1

L2 Linker

Hello ,

 

There is a Terraform Registry which is released under an as-is, best effort, support policy.

https://registry.terraform.io/providers/PaloAltoNetworks/prismacloud/latest/docs/resources/org_cloud...

 

The link above will provide you more information on how to get started. Please follow step 4 which will provide you information on onboarding the AWS org onto Prisma Cloud.

 

* Please note that these scripts should be seen as community supported and Palo Alto Networks will contribute our expertise as and when possible. 

  • 901 Views
  • 1 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!