Connecting AWS with CloudFormation

  • Updated

When integrating an AWS account, customers have the option to connect using CloudFormation:

AWScf.png

Once you have selected the options above, select Next in the bottom right corner to continue with the next steps.

  • On the next page, select if you will be integrating a standard AWS account or an AWS GovCloud account:

AWScfgovcloud.png

  • Next, select which AWS products that you would like Vanta to scan:

awscfproducts.png

  • On the following screen, download the .yaml file provided here:

AWScfdownloadscript.png

  • Navigate to AWS CloudFormation and create a new Stack using the "With new resources (standard)" option:

AWScfcreatestack.png

  • On the Create Stack page, select the following options and upload the .yaml file you downloaded from Vanta:

awscfcreatestack3.png

  • On the Specify stack details page provide a stack name and the other parameters should be pre-filled based on the file you previously uploaded:

AWscfstackdetails3.png

  • There is no need to Configure stack options, you can leave the defaults or update them as you wish, and move on to review.
  • At the bottom of the Review page, ensure to select the acknowledgement at the bottom of the page and hit Submit
  • Once the stack completes, you can click on the "Outputs" tab and copy the role ARN that was created:

awscfoutputs3.png

  • After you've copied the role ARN, you can head back to Vanta and paste it here:

Awscfrolearn.png

  • After clicking next, you can configure the regions that you would like Vanta to read in resources from and mark any resources out of scope as necessary!

Additional Resources:

 

Was this article helpful?

Have more questions? Submit a request