Amazon Web Services Account
FortiCWP offers an API-based approach, pulling data directly from AWS via RESTful API. Authentication is done through OAUth2.0. FortiCWP users can access token to generate API queries.
Prerequisite
Account Requirement
Before adding your AWS account to FortiCWP, make sure the AWS account user you use is an Administrator User. For instructions on creating an "Administrative User" in your AWS account, please refer to: https://docs.aws.amazon.com/mediapackage/latest/ug/setting-up-create-iam-user.html.
Activate Security Token Service (STS)
FortiCWP uses regional Security Token Service (STS) to reduce latency and provide smoother user experience.
Follow these steps to turn on Security Token Service (STS) on AWS console.
- From your AWS console dashboard, go to Identity and Access Management (IAM).
- Click Account settings from the left navigation panel, and click to expand Security Token Service (STS).
- Based on your location, activate EU (Ireland) if you are located in European Union, otherwise, activate US West (Oregon).
Getting started on adding AWS account(s)
- Log into FortiCWP with your account.
- From the navigation pane, go to Admin > Account.
- In Cloud Account tab, click ADD NEW under Add New Account.
- Select the AWS sign and choose an add method, then click Next.
- Follow the instructions to finish adding the AWS account(s).
There are 4 methods to add AWS account to FortiCWP, please choose the one according to your organization requirement.
Install Method | Description |
Add 1 Account Automatically (via Cloudformation) |
Add a single AWS account on FortiCWP with automation through AWS CloudFormation. CloudFormation will setup AWS Role and CloudTrail and complete the installation. (Recommended) |
Add AWS Organization |
Add an AWS organization with multiple sub-accounts through the master account using AWS CloudFormation. |
Add 1 Account Manually | Add a single AWS account on FortiCWP by setting up AWS Role and CloudTrail manually. |
Add Multiple via CloudFormation | Add multiple AWS accounts on FortiCWP through AWS CloudFormation. |