Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.
No ratings
RakeshMG
Saviynt Employee
Saviynt Employee

Use Case


need information/clarification on below points-
  1. There were 2 options for the Config files which needs in the form of CloudFormation Stack:
    • Option 1 - EIC trusts each AWS account individually.
      Option 2 - EIC trusts first Cross account (and establish cross account thereafter)
  2. Need clarification on the AWS Cloudformation stack as there are many options for the Cloudformation stack (last column) in a table under heading "Selecting Stack Templates":
  • Security Analyzer
  • Security Analyzer + IGA
  • Security Analyzer + IGA + PAM
  • Security Analyzer + IGA + Detective action
  • Security Analyzer + IGA + Real Time Monitoring with Detective action
  • Security Analyzer + IGA + Real Time Monitoring with Detective action + PAM

Applicable Version(s)


v202x and above

Solution

 

Need information/clarification on below points-
There were 2 options for the Config files which needs in the form of CloudFormation Stack:
Option 1 - EIC trusts each AWS account individually.
Option 2 - EIC trusts first Cross account (and establish cross account thereafter)

Response : Please use this Option 1 only if you want to establish trust with each AWS account separately.

Use Oprtion 2 : When you have to establish a trust between EIC and multiple AWS accounts, use this option only if you want to establish trust with the First Cross Account. For the remaining AWS accounts, you can establish a trust with the First Cross Account instead of EIC.

Need clarification on the AWS Cloudformation stack as there are many options for the Cloudformation stack (last column) in a table under heading "Selecting Stack Templates":
Security Analyzer
Security Analyzer + IGA
Security Analyzer + IGA + PAM
Security Analyzer + IGA + Detective action
Security Analyzer + IGA + Real Time Monitoring with Detective action
Security Analyzer + IGA + Real Time Monitoring with Detective action + PAM

Response : You must choose a template based on your requirement.
See refer to above Option 1: EIC trusts each AWS account individually or Option 2: EIC trusts the First Cross Account

Version history
Last update:
‎04/20/2023 07:12 AM
Updated by:
Contributors