What permissions does Appranix service account need to protect AWS resources?
Appranix service account requires the following permissions to successfully discover and protect your cloud infrastructure in AWS and recover it in the DR/Recovery regions.
The Role name and the purpose of the asking is explained in the below table.
Discovery - Permission required to discover the resources and its metadata.
Protection - Permission required to protect the resources and its metadata.
Recovery - Permission required to recover the protected data from the Primary region to the secondary/DR region.
# | Roles | Discovery | Protection | Recovery |
1 | Ec2FullAccess | TRUE | TRUE | TRUE |
2 | ELBFullAccess | TRUE | TRUE | TRUE |
3 | RDSFullAccess | TRUE | TRUE | TRUE |
4 | CloudFormationFullAccess | FALSE | FALSE | TRUE |
5 | KMSDescribe | TRUE | FALSE | TRUE |
6 | KMSEncryptAndDecrypt | TRUE | TRUE | TRUE |
7 | KMSCreateGrant | TRUE | TRUE | TRUE |
8 | ACMReadAccess | TRUE | FALSE | TRUE |
9 | IAMPassRole | TRUE | TRUE | TRUE |
Related Articles
AWS Environment Onboarding
Subscribe from AWS Marketplace Search for "Appranix" in the AWS Marketplace Subscribe for "Appranix Cloud Application Resilience" from the search result Subscribe to the service Register your account with Appranix AWS Onboarding Prerequisites For ...
What roles does Appranix service account need to protect GCP resources?
Appranix creates a service account and assigns the below roles to the service account. The Role name and the purpose of the asking is explained in the below table. Discovery - Permission required to discover the resources and its metadata. ...
GCP Environment Onboarding
Subscribe from GCP market place Search for "Appranix" in GCP Marketplace. Subscribe to the "Appranix Cloud Application Resilience". Register an account with Appranix using the registration form. Activate your account through the verification email ...
AWS Cloud Connections FAQ
When we add an AWS account to Appranix does it take into account the default resources of the AWS account as well? - No, only the dependent resources of the selected resource(EC2, RDS Instance) While discovering assemblies, Appranix does show the VPC ...
Azure Environment Onboarding
Connect to an Azure Account For onboarding the Azure account in Appranix, the following details and a few roles and permissions in Azure are supposed to be enabled. Permissions Required: We need any one of the following permissions to ...