Deploy Threat Scanners
Threat Scanners are used to fetch real-time updates of your configured cloud assets. Deploying Threat Scanners allows you to obtain the necessary keys to get started with Cloud Detection and Response.
Let's deploy your first Threat Scanner.
-
Navigate to the Configure -> Threat Scanners -> AWS (New) in TotalCloud.
Click Create Deployment to begin your scanner deployment. You can find three input fields in the Create Deployment screen.
a) Provide a unique Deployment Name. Ensure the name starts with 'aws-', followed by alphanumeric characters. The character limit is 25 (including 'aws-').
b) Provide the Account ID of the cloud provider account on which you want to deploy Threat Scanners.
c) Select the Deployment Region where the threat scanner must be deployed on.
After creating a deployment, the CDR key is visible from the list of deployments. Store it for later use.
AMI ID is region-specific. Obtain the AMI specific to your deployment region.
Once you have created your first deployment, the option to download scripts appears. This downloads the Terraform templates to set up CDR on your network.
-
Obtain the CDR Key from your newly listed Deployment.
-
Next, click Download Scripts. Once the scripts are downloaded, follow the instructions at Onboard CDR for AWS to proceed with the rest of the CDR configurations.