For the complete documentation index, see llms.txt. This page is also available as Markdown.

Amazon Web Services (AWS)

Connect Sola and AWS to get security insights

The Amazon Web Services (AWS) integration connects data from your AWS account to your Sola workspace, making it easy to search and find answers to your specific use cases.

Overview

The AWS integration gives you a complete view of your AWS environment, allowing you to monitor and analyze AWS security posture and potential threats.

With the AWS integration, you can:

  • Ensure cloud security best practices

  • Gain full visibility into your cloud resources

  • Identify security risks across your cloud environment

No hidden indirect cloud provider charges The Sola integration won’t use resources that increase your cloud costs.

Set up AWS data source integration with Sola

Go to Integrations > Data Sources > click New data source > select AWS.

The Sola wizard will take you through the steps.

Connect AWS Organization to Sola

To connect AWS, you'll need an AWS Organization with permissions to create IAM roles via CloudFormation StackSets.

AWS organization connection method is available on paid plans.

Follow the step-by-step guide below to complete the setup.

How do I set up an AWS Organization data source using CloudFormation?

Prerequisites

  • Log into your management account with a user that has the IAMFullAccess managed policy, or any other policy that grants permissions to create CloudFormation stacks, manage IAM roles and policies, and view identity details.

  • Ensure that trusted access between AWS CloudFormation StackSets and AWS Organizations is enabled. Learn more.

  • Get your AWS Organization Root ID (e.g. r-XXXX). Learn more.

Integration setup

  1. Launch CloudFormation from the Sola wizard. Add your AWS Organization Root ID, and optionally any Excluded Member Account IDs. Review, acknowledge, and create the stack. This may take a few minutes.

  2. Once the stack is created, copy the IAM Role ARN and Stack Region from the Outputs tab in the CloudFormation stack. The output parameter names are SolaOrgAccess and StackRegion. Paste them below.

  3. Click Test Connection to validate the details and continue.

Connect AWS to Sola

To connect AWS, you’ll need an AWS account, with the necessary permissions to create an IAM role.

Recommended for secure, production environments. These methods use an IAM role delegation within your account to securely grant Sola read-only access to your AWS services and resources.

  • CloudFormation (Recommended)

  • Terraform

AWS IAM access and secret keys.

Create an access key pair from within your AWS Management Console. Your IAM user must have at least SecurityAudit permissions on all AWS services.

  • IAM Credentials

Sync behavior and limitations

Some tables have specific sync constraints due to data size, retention policies, or performance considerations. Below are special cases to be aware of:

Table
Sync details

aws_securityhub_finding

Includes only findings with an Active status.

Explore AWS templates

Get started with AWS-focused security templates, built by our expert security team.

AWS

Last updated

Was this helpful?