Amazon Web Services (AWS)
Connect Sola and AWS to get security insights
The Amazon Web Services (AWS) integration connects data from your AWS account to your Sola workspace, making it easy to search and find answers to your specific use cases.
Overview
The AWS integration gives you a complete view of your AWS environment, allowing you to monitor and analyze AWS security posture and potential threats.
With the AWS integration, you can:
Ensure cloud security best practices
Gain full visibility into your cloud resources
Identify security risks across your cloud environment
Your data can only be retrieved, never modified.
Once connected, your data is securely stored, and access is restricted to retrieving configurations and metadata only. Authentication methods ensure secure delegation of permissions while maintaining data integrity.
No hidden indirect cloud provider charges The Sola integration won’t use resources that increase your cloud costs.
Set up AWS data source integration with Sola
Go to Integrations > Data Sources > click New data source > select AWS.
The Sola wizard will take you through the steps.
Connect AWS Organization to Sola
To connect AWS, you'll need an AWS Organization with permissions to create IAM roles via CloudFormation StackSets.
Recommended: connect at the organization level to manage multiple AWS accounts through a single integration.
AWS organization connection method is available on paid plans.
Connect at the organization level to manage multiple AWS accounts through a single integration.
This method utilizes an IAM role, deployed at the organization root via AWS CloudFormation StackSets, to securely grant Sola read-only access to your AWS services and resources across all accounts.
CloudFormation
Follow the step-by-step guide below to complete the setup.
How do I set up an AWS Organization data source using CloudFormation?
Prerequisites
Log into your management account with a user that has the IAMFullAccess managed policy, or any other policy that grants permissions to create CloudFormation stacks, manage IAM roles and policies, and view identity details.
Ensure that trusted access between AWS CloudFormation StackSets and AWS Organizations is enabled. Learn more.
Get your AWS Organization Root ID (e.g. r-XXXX). Learn more.
Integration setup
Launch CloudFormation from the Sola wizard. Add your AWS Organization Root ID, and optionally any Excluded Member Account IDs. Review, acknowledge, and create the stack. This may take a few minutes.
Once the stack is created, copy the IAM Role ARN and Stack Region from the Outputs tab in the CloudFormation stack. The output parameter names are SolaOrgAccess and StackRegion. Paste them below.
Click Test Connection to validate the details and continue.
Connect AWS to Sola
To connect AWS, you’ll need an AWS account, with the necessary permissions to create an IAM role.
Recommended for secure, production environments. These methods use an IAM role delegation within your account to securely grant Sola read-only access to your AWS services and resources.
CloudFormation (Recommended)
Terraform
AWS IAM access and secret keys.
Create an access key pair from within your AWS Management Console. Your IAM user must have at least SecurityAudit permissions on all AWS services.
IAM Credentials
Sync behavior and limitations
Some tables have specific sync constraints due to data size, retention policies, or performance considerations. Below are special cases to be aware of:
aws_securityhub_finding
Includes only findings with an Active status.
Explore AWS templates
Get started with AWS-focused security templates, built by our expert security team.

Last updated
Was this helpful?