[ Applies to ] StorageGuard 9.x and later / Rubrik CDM clusters / Rubrik CDM REST API
StorageGuard collects configuration data from Rubrik by opening an HTTPS connection to the Rubrik CDM cluster and running read-only REST API calls. This article describes the requirements and how to create a read-only service account.
In this article
Requirements
| Requirement | Details |
|---|---|
| Cluster address | The network name or IP address of the Rubrik CDM cluster. |
| Credentials | A service account with the Read-Only Administrator role, and its secret. |
| Permissions | Examples of read-only REST API calls used: /api/v1/host, /api/v1/user/lockout, and /api/v1/mfa/rsa/server. |
| Network access | HTTPS connectivity (port 443) from the StorageGuard server to the Rubrik CDM cluster IP address. |
Create a scan service account
The following procedure is a suggested way to create a read-only service account.
- Log in to Rubrik, and click the Settings wheel.
- Under Access Management, click Users, and then select Service Accounts.
- Click Add Service Account, enter a name for the service account, and click Next.
- Select the Read-Only Administrator role, and click Add.
- Copy the User ID and secret.
- Click Done.
Note: Copy the secret before you click Done. Rubrik shows it only once. Store it securely; you'll enter the User ID and secret in StorageGuard.
[ Still need help? ]
Our support team is here for you. Submit a request
Comments
0 comments
Please sign in to leave a comment.