Setting Up CSM without Infrastructure Monitoring
In addition to setting up Cloud Security Management (CSM) with or without an Agent, you can also set it up without Infrastructure Monitoring.
Set up CSM on your AWS account
Navigate to the AWS Integration configuration page in Datadog.
On the Configuration tab, select the account you want to enable CSM on.
If you don’t see the required account, add it by clicking Add AWS Account(s) and following the onscreen prompts.
To turn off infrastructure monitoring on the selected account, under the account number, navigate to the Metric Collection tab, then click the disable metric collection link. Then, click Disable Metric Collection to confirm.
On the Resource Collection tab, click Enable next to Cloud Security Management. You are redirected to the Cloud Security Management Setup page, and a setup dialog automatically opens for the selected account.
On the setup dialog, switch the Enable Resource Scanning toggle to the on position.
Click Done to complete the setup.
Note: In your CSM settings, set up resource evaluation filters to limit the number of hosts you need security on.
Set up CSM on your Azure subscription
Navigate to the Azure Integration configuration page in Datadog.
Select the client ID or subscription you want to enable CSM on.
If you don’t see the required client ID, add it by clicking Add New App Registration and following the onscreen prompts.
To turn off infrastructure monitoring on the selected account, under the client ID, navigate to the Metric Collection tab, then turn off the Enable Metric Collection toggle.
On the Resource Collection tab, click Enable next to Cloud Security Management. You are redirected to the Cloud Security Management Setup page, which automatically scrolls to the selected Azure subscription in the Cloud Integrations section.
Switch the Resource Scanning toggle to the on position.
Click Done to complete the setup.
Note: In your CSM settings, set up resource evaluation filters to limit the number of hosts you need security on.
Navigate to the Google Cloud Platform configuration page in Datadog.
Select the service account you want to enable CSM on.
If you don’t see the required account, add it by clicking Add GCP Account and following the onscreen prompts.
To turn off infrastructure monitoring on the selected account, under the account name, navigate to the Metric Collection tab. Then, above the Metric Collection table, click Disable All.
On the Resource Collection tab, click Enable next to Cloud Security Management. You are redirected to the Cloud Security Management Setup page, which automatically scrolls to the selected Google Cloud Platform project in the Cloud Integrations section.
Switch the Resource Scanning toggle to the on position.
Click Done to complete the setup.
Note: In your CSM settings, set up resource evaluation filters to limit the number of hosts you need security on.