Onboard GCP Cloud Account in Strata Cloud Manager
Focus
Focus
AI Runtime Security

Onboard GCP Cloud Account in Strata Cloud Manager

Table of Contents

Onboard GCP Cloud Account in Strata Cloud Manager

Onboard your GCP cloud account in Strata Cloud Manager.
Onboard the GCP cloud account in Strata Cloud Manager and create a Terraform configuration to generate a service account to discover the cloud assets.
Where Can I Use This?What Do I Need?
  • Creating a GCP Service Account for Strata Cloud Manager Integration
  1. Select Insights → AI Runtime Security.
    1. If you are onboarding a cloud account for the first time, click Get Started under the Network section.
    2. If you have previously onboarded a cloud account, click the Cloud Account Manager (cloud) icon.
  2. Select Cloud Service Provider as GCP and select Next.
  3. Enter basic information:
    • A unique Name to identify your onboarded cloud account (Limit the name to 32 characters).
    • The GCP Project ID.
    • Input (Storage) Bucket Name you created in the Create a Cloud Storage Bucket prerequisite step.
    Select Next.
  4. In Application Definition, select Next.
    The namespace shows applications from Pods/Cluster workloads, while VPC/VNETs display applications from virtual machine workloads.
  5. Input Service Account Name (Enter only lowercase letters and numbers; the name must be between 3 and 24 characters).
  6. Download Terraform.
    Use one service account per project.
  7. Execute Terraform. Unzip the downloaded Terraform zip file and follow the `README.md` file for instructions to deploy the Terraform in your cloud environment.
    cd <unzipped-folder>/gcp #Deploy the Terraform terraform init terraform plan terraform apply
    Provide the required IAM Permissions to the user executing the Terraform template.
  8. Select Done.
    This validates the successful creation of a service account in GCP.
    After successfully connecting to the cloud service provider with the specified service account, the AI Runtime Security instance gathers cloud VM and Kubernetes workload IP-tags from the Edge Service and tag collector, respectively. This discovery process can take up to 15 minutes before assets appear on the Strata Cloud Manager Command Center dashboard.
  9. You can now view and manage the onboarded cloud accounts in Strata Cloud Manager.
  10. The Strata Cloud Manager dashboard under Insights → AI Runtime Security shows all the cloud assets discovered.
    Next, protect the network traffic flow by deploying an AI Runtime Security instance in GCP.