Setting up Cloud Infrastructure Sync with Google Cloud Platform (GCP) takes less than 15 minutes. Once complete, we begin collecting your IPs and a self-published report is generated within 3-5 business days. We’ll scan your infrastructure multiple times per day and will make any updates that are consistent after two consecutive 24 hour periods. Assets added to infrastructure when a connection is set up have a 60-day grace period before they impact grading.
Prerequisites
Setup requires administrator access to your GCP account.
Setting up cloud sync without the correct permissions results in an error 401 Unauthorized
.
Step 1: Add Account Info
- Navigate to the Cloud Infrastructure Sync page in the Attack Surface section.
- Select the Add Connection dropdown.
- Select Google Cloud Platform (GCP).
- Enter a name for the connection. Optionally, you may also enter a description. The name and description identify the connection; the self-published company can have a different name, and will be named in step 2.
- Select Continue.
Step 2: Confirm Self-Published Company
A new self-published company based on the GCP infrastructure in the account you added will be created. This way, you can have a self-published company and rating for your GCP infrastructure.
Self-published companies are managed like any other subsidiary in your Ratings Tree. They’re classified as company-provided assets because the IPs are provided via an automated sync with your company.
- Select a parent company for the self-published company.
- Enter a name for the self-published company, e.g., “Saperix, Inc. GCP.”
- Enter the primary domain associated with the parent.
- Enter a description for the self-published company, e.g., “Saperix, Inc. GCP Infrastructure.”
- Select a visibility setting for the self-published company. Cloud Infrastructure Sync assets impact your rating regardless of your choice during setup.
- Select Continue.
Step 3: Set Up Sync Permissions
Set up permissions for a single GCP account or multiple accounts (e.g. all accounts).
White text: Set up a single account scan or any number of accounts you’d like to add.
This setup includes the minimum required permissions; we recommend leaving them as-is, but you may change or remove them as needed. Changing permissions may affect Cloud Infrastructure Sync's ability to monitor your cloud infrastructure.
- Download the Configuration Instructions.
- Complete the steps in the instructions.
- Upload the JSON file generated during the configuration process.
- Select Finish Adding Connection.
- May 2, 2025: Error 401.
- February 20, 2025: Added grace period.
- February 6, 2025: Added permissions.
Feedback
0 comments
Please sign in to leave a comment.