Skip to main content

 

 

Cisco Defense Orchestrator

Onboard an AWS VPC

Before Onboarding your AWS VPC

Before onboarding your Amazon Web Services (AWS) Virtual Private Cloud (VPC) to CDO, review these prerequisites:

  • The AWS VPC has to be able to reach your Secure Device Connector (SDC), whether you use an on-premises SDC or a Cloud SDC before you can onboard the AWS VPC to Cisco Defense Orchestrator (CDO).
  • To onboard an AWS VPC, you will need the AWS VPC's access key and secret access key both of which are generated using the Identity and Access Management (IAM) console. See Understanding and Getting Your Security Credentials for more information. 
  • A VPC must have at least one security group and one inbound rule before it can be onboarded. 

Note: CDO does not support peered AWS VPCs. If you attempt to onboard a peered VPC referencing a security group that is defined on the peer VPC, the onboarding process fails. 

Onboarding Procedure

To onboard an AWS VPC to CDO, follow this procedure:

  1. From the CDO Navigation Bar, click Devices & Services. 
  2. Click the blue plus button blue_cross_button.png to begin onboarding the device.
  3. Click AWS VPC
  4. Enter the Access Key ID and Secret Access Key credential to connect to the AWS account. The generated list of names are retrieved from the AWS VPC you supplied login credentials to.
  5. Click Connect
  6. Select a Region From the drop-down menu. The region selected should be where the VPC is local to. 
  7. Click Select
  8. Use the drop-down menu to select the correct AWS name. The generated list of names are retrieved from the AWS VPC you supplied login credentials to. Select the desired AWS from the drop-down menu. Note that AWS VPC IDs names are unique, and there cannot be two or more instances with the same ID. 
  9. Click Select
  10. Enter a name to be shown in the CDO UI. 
  11. Click Continue
  12. (Optional) Enter a label for the device. Note that if you create labels for an AWS VPC, the tables are not automatically synchronized to your device. You must manually recreate the labels as tags in the AWS console. See Labels and Label Groups for more information.
  13. Click Continue
  14. Return to the Devices & Services page. After the device has been successfully onboarded, you will see that the Configuration Status is "Synced" and the Connectivity state is "Online." 

Related Articles:

  • Was this article helpful?