Alibaba Cloud Overview & Support
After InsightCloudSec is successfully installed, you’re ready to enable visibility into your target Alibaba Cloud accounts. Review the sections below to determine the best starting point for your environment.
Supported Services
Listed below are the supported services (and their components) for Alibaba Cloud.
Services
ActionTrail
API Key
AsparaDB for RDS
AsparaDB for Redis
Cloud Account
Custom Policy
Disk
ECS Instance
Elastic IP
Flow Log (VPC)
Group
Image
KMS Key
Kubernetes Cluster
Network Interface
Object Storage Bucket
RDS Snapshot
Redis Snapshot
Region
Role
Route Table
Security Group
Server Load Balancer (Application Load Balancer, Classic Load Balancer, and Network Load Balancer)
Simple Log Service
Snapshot
SSH Key Pair
User
VPC
VSwitch
Alibaba Cloud Policies
An RAM policy must be associated with the Alibaba Cloud user that will be used by InsightCloudSec to ensure secure and appropriate access of this information. InsightCloudSec support of Alibaba Cloud is currently limited to read-only access.
Read-Only Policy
The Read-Only policy contains only read permissions for the Alibaba Cloud resources that InsightCloudSec supports. The policy can be obtained from our public S3 bucket: <https://s3.amazonaws.com/get.divvycloud.com/policies/AliCloud-Read-Only-Policy.json>
This policy will need to be updated any time InsightCloudSec supports a new Alibaba Cloud service.