[ Applies to ] StorageGuard 9.x and later / Pure Storage FlashArray and FlashBlade / Purity REST API and CLI
StorageGuard collects configuration data from Pure Storage FlashArray and FlashBlade systems by opening HTTPS and SSH connections to each system, and running read-only REST API calls and CLI commands. This article describes the requirements and how to create the scan account.
In this article
Requirements
| Requirement | Details |
|---|---|
| System address | The network name or IP address of each Pure Storage system. |
| Credentials | A read-only user name and password for each system. StorageGuard uses the same credentials for REST API and SSH connections. |
| Role and permissions | The readonly role. Examples of REST API calls used: GET SNMP and GET DNS. Examples of CLI commands used: puread account list and purelog list. |
| Network access | HTTPS (port 443) and SSH (port 22) connectivity from the StorageGuard server to each system. |
Create a scan account
The following procedure is a suggested way to create a user with the readonly role. The example uses the user name sguser; you can use any user name.
- Log in to the Purity CLI over SSH with an administrator account.
-
Create the user with the readonly role:
pureadmin create --role readonly sguser - When prompted, enter and confirm the password for the new user.
- Repeat these steps on each FlashArray or FlashBlade that StorageGuard scans.
[ Still need help? ]
Our support team is here for you. Submit a request
Comments
0 comments
Please sign in to leave a comment.