Note: CloudBot is only available for customers on our Pro, Premium and Vanguard plans.
Activate CloudBot
You can enable it in two ways:
When you first add the cloud account:
Automatically sync new targets π Just import any new Cloud Targets
Whenever any new targets are found in your cloud account, they will be imported automatically
Automatically scan new targets π Scan your targets immediately after import
βAutomatically scan newly detected and imported cloud targets.
Import AWS/Azure/GCP Tags π Any tags assigned to your targets in the cloud platform will be brought in automatically
Assign Tags π Any targets brought in by this integration will automatically have the specified tag added as an Intruder tag
βUse these options to organize and manage your targets, scans and portal more effectively.
Once the cloud account has already been added:
Head to Targets page > Select the cloud account > Settings
> toggle Automatically sync new targets
to on
(the toggle will turn green) and hit refresh:
β
Manage what gets imported
Automatically sync new targets
Automatically adds cloud targets to the Intruder portal when instances are spun up and remove them when targets are decommissioned in your cloud account. The licence will only be assigned when the target is scanned.
β
Please be aware, Auto-add target
will not add any targets previously excluded from scanning. You'll need to add those manually.
Add targets based on a rule
Only assets that adhere to that rule will be added to the Intruder platform; this applies to present targets as well as any future ones that we find.
β
You can add as many rules as you like.
NB: when adding more than one Selective sync rule these are logical AND
rules, e.g. setting rules for a specific tag and a specific region, will mean only targets that match both the tag and the region will be added.
β οΈ It's worth noting that enabling a rule will remove any previously imported cloud targets that don't adhere to it.
Head to the Targets page > click on the relevant cloud account > click
Settings
> Selective sync, click+ Add rule
β
Remove imported targets
Maybe you accidentally imported the wrong thing; want to exclude one or two from a valid rule, or simply don't want your licenses being assigned yet, we've got you covered. Just select from the list and hit the Exclude
button:
β
Manage what gets scanned
Auto-scan targets
Any cloud assets matching your import rules will be scanned as soon as they're detected + added to the platform.
Head to your Targets > Cloud accounts > Click account > Settings > Automatically scan new targets
β
If you don't enable Auto-scan targets, your asset(s) will be scanned as soon as an 'all target' scan runs, or you kick off a manual scan with it included
Where can I see these scans?
Any scans kicked off automatically by CloudBot will be shown on the Scans page, just filter by
Cloudbot scan
as shown below:
β
Disable CloudBot
Head to Targets page > Settings button > toggle Auto-add targets
to off > confirm the change by pressing Turn off
on the modal that appears.
β
All targets already imported will remain, but any new ones that appear in your cloud account will need to be added manually.
Once Cloudbot has been disabled, you can easily add targets manually. Just click the green +
button:
β
Tracking CloudBot activity
You can find updates on CloudBot activity in your Activity Feed on the dashboard.
β
This will show you any changes that may have occurred and the date and time of these changes including when a target is deleted, created or restored:
β