: Configure Agentless Scanning for AWS
Focus
Focus

Configure Agentless Scanning for AWS

Table of Contents

Configure Agentless Scanning for AWS

  1. Log in to the Prisma Cloud administrative console.
  2. Select
    Compute > Manage > Cloud Accounts
    .
  3. Click the edit button of your cloud account.
  4. Go to the
    Agentless Scanning
    section.
  5. Expand the
    Advanced settings
    .
    1. Enable Permissions check to verify that the permissions are correct before running a scan.
    2. Scanning type
      : For AWS accounts, you can decide between two scanning modes.
      1. Same Account
        : Scan hosts of your AWS account using that same account.
      2. Hub Account
        : Scan hosts of your AWS account using a different account. Select another onboarded account to scan the account you are onboarding from the list.
    3. Enter a
      Proxy
      value if traffic leaving your AWS tenant uses a proxy.
    4. Under
      Scan scope
      you can choose
      All regions
      to scan in all AWS regions. If you choose Custom regions, enter the AWS region in which you want Prisma Cloud to scan.
    5. Enter tags under
      Exclude VMs by tags
      to further limit the scope of the scan.
    6. Choose whether or not to
      Scan non running hosts
      .
    7. Choose whether or not to enable
      Auto-scale scanning
      . If you disable auto-scale, specify number of scanners Prisma Cloud should employ.
    8. Enter an optional
      Security group
      . If the default VPC isn’t available in all the regions of your AWS account, follow AWS instructions for creating a custom security group enabling an egress connection to Prisma Cloud on port 443 in the Amazon VPC Console.
  6. Click Next.
  7. Leave the
    Discovery features
    unchanged.
  8. Click
    Save
    to return to
    Compute > Manage > Cloud accounts
    .

Recommended For You