OCI Onboarding Process For CNAPP

Modified on Mon, 28 Apr at 8:42 PM

STEP 1: LOG IN AND VERIFY

Log in to Cloud Security portal using your credentials : 
https://acs-us.clouddefenseai.com/
 





After logging in, click on sidebar menu and open "Management" -> "Onboard Accounts" -> "Add New Account"




 Click on "Oracle Cloud Infrastructure (OCI)"


STEP 2: BASIC INFORMATION 


  • Start with giving it a name. You can give any name for your account. Labels help you to identify the account. Some examples of labels are: US PROD, Dev server, etc.


STEP 3: BUSINESS UNIT


Choose a Business Unit from the dropdown list or create a new business unit.



STEP 4: CHOOSE REGIONS


We will only scan the regions that you choose here. You can choose any specific region or all regions.



After this step, users will be able to onboard with their OCI.




The detailed instruction for OCI onboarding is given below.


STEP 1: CREATE A USER

  1. Log in to OCI Console.

  2. Navigate to Identity & Security > Users.

  3. Click  “Create User.“

  4. Enter:

  • NameCDOnboarding@clouddefense.ai

  • DescriptionUser for CD onboarding

  1. Click  “Create User"

  2. Fetch the User OCID

  • After creation, go to the User Details page

  • Copy the User OCID
     


STEP 2: CREATE A GROUP

  1. Go to Identity & Security > Select Domain > Groups.

  2. Click  “Create Group.

  3. Enter the following:

  • NameCDOnboardingGroup

  • Description: Group for CD onboarding users

  1. Click  “Create Group.“


STEP 3: ASSIGN THE USER TO THE GROUP

  1. Navigate to Identity & Security > Select Domain > Groups.

  2. Select CDOnboardingGroup.

  3. Click Add User.

  4. Select CDOnboarding@clouddefense.ai and click Add.


STEP 4: CREATE A POLICY (ADMIN ACCESS)

  1. Go to Identity & Security > Policies.

  2. Click “Create Policy“.

  3. Enter the following details:

  • Name: CDOnboardingUserReadAccess

  • Description: Read access for CDOnboardingGroup

  • Policy Statements: “Allow group CDOnboardingGroup to read all-resources in tenancy” 

  1. Click “Create“.


STEP 5: GENERATE API KEYS FOR THE USER

  1. Navigate to Identity & Security > Users.

  2. Click CDOnboarding@clouddefense.ai.

  3. Navigate to the API Keys tab.

  4. Click Add API Key.

  1. Choose Generate Key Pair.

  2. Download the Private Key (.pem) file.

  1. Copy the Fingerprint.


STEP 6: FETCH REQUIRED DETAILS

  • User OCID: From Step 1

  • Tenant OCID:  Go to Identity & Security > Tenancies. Copy the Tenancy OCID.

  • Home Region: From the Regions dropdown select the Home Region


FINAL SUMMARY OF REQUIRED DETAILS


  • User OCIDxxxxxxxx

  • Private Key Fileoci_api_key.pem

  • Tenant OCIDxxxxxxxx

  • Home Regionus-ashburn-1 (example)

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons

Feedback sent

We appreciate your effort and will try to fix the article