icon-cloud-connector.svg
Cloud & Branch Connector

About Amazon Web Services Accounts

Partner integrations enable you to add Amazon Web Services (AWS) accounts by allowing the Zscaler service to fetch metadata from the accounts. Adding an AWS account allows you to use user-defined tags in Zscaler security policies.

To enable this feature, contact Zscaler Support.

Partner integrations provide the following benefits and enable you to:

  • Configure permissions for Zscaler to discover workloads and associated metadata from an AWS account.
  • View discovered workloads and the associated metadata.
  • Configure regions where Zscaler can discover workloads.

About the Accounts Page

On the Accounts page (Administration > Partner Integrations > Accounts), you can do the following:

  1. Add an AWS account.
  2. View a list of all accounts. For each account, you can view:
    • Account ID: The ID of the AWS account.
    • Name: The name of the account.
    • Last Modified By: The last admin to modify the account.
    • Last Modified On: The date and time the account was last modified.
    • Permission: The permission status of the account (i.e., Pending, Allowed, or Denied).

      After an account is onboarded, set the role in AWS and refresh the account in the Zscaler Cloud & Branch Connector Admin Portal. The status updates from Pending to either Allowed or Denied.

    • Latest Sync: The last time the account synced. After refreshing, this column displays the time when the user clicked the Refresh button.
  3. Edit an account.
  4. Refresh an account.
  5. Configure additional settings for an account. For each account, you can configure:
    • Launch Cloudformation: This allows you to launch CloudFormation in AWS.
    • Disable Data Collection: Zscaler stops the tag discovery process.
    • Enable Data Collection: Zscaler begins the tag discovery process.
    • Delete Accounts: The account is permanently deleted.
  6. Modify the table and its columns.
  7. Search for an account.
  8. Download the CloudFormation template.
  9. Go to the AWS Account Groups page.

Related Articles
About Amazon Web Services AccountsAdding an Amazon Web Services AccountAbout Amazon Web Services Account GroupsAdding an Amazon Web Services Account GroupConfiguring Workload Discovery for Workloads in Amazon Web Services