Secrets Manager
Last updated
Copyright© 2023 CloudTruth
Last updated
This AWS integration allows you to configure CloudTruth External Parameters from your AWS Secrets Manager.
If you already have a CloudTruth AWS integration you can add AWS Secrets Manager by editing the existing account, selecting this integration and adding the . The and role setup methods automatically create the Secrets Manager inline policy.
To create a new or additional AWS account click Add AWS Account
from the Integrations AWS page to bring up the add account pane. Add a name for the AWS account, your specific AWS account ID and the AWS account role name. CloudTruth allows you to select regions where your resources exist, all US regions are enabled by default.
The Secrets Manager integration supports . To enable Push Actions select Write Access
for the integration and apply the .
Check the AWS Secret Manager integration and click Save
.
With the provided External ID create your AWS Role.
Click Add Inline Policy
.
Click the JSON
Tab.
Paste in the following JSON for the AWS Secret Store integration policy and click Review Policy
.
Type in a name for the policy and click Create Policy
.
The AWS account will enter an Integration Error state until the AWS role is configured. An auto generated External Id will be created to use in the .
Adding an Inline Policy to the AWS Role allows CloudTruth secure access to the selected integration service. The inline policy is automatically created if you used or to create the role.
From the select the role that you created for CloudTruth access.
Setup is now complete for both the AWS Role and Policy. After refreshing by clicking "Check Integration Status" the CloudTruth integration will now show as "Connected", and you can begin creating that reference your AWS resources.