Connecting your AWS account to Clumio involves deploying Clumio resources in your AWS account so that Clumio can connect to the selected AWS account and region to perform SecureVault backup and restore tasks.
Connect your AWS account using Clumio's CloudFormation or Terraform templates, or set up your AWS account integration manually.
Connecting to an AWS account is a one-time step. You can connect an account to multiple regions if required, using the Clumio CloudFormation or Terraform templates. These templates follow the "least privileges" model, in line with standard AWS Identity and Access Management (IAM) security guidelines. For information about supported regions, see Supported AWS regions. Use the Clumio CloudFormation template or the Terraform template to connect accounts to multiple regions.
You can use the CloudFormation template to create a stack set, which is then deployed to your AWS account. Connecting through Terraform installs the Clumio Terraform template in the AWS account, provisioning the set of AWS resources in the account used by Clumio to perform backups and restores.
Prerequisites
Before you connect your AWS environment, verify permission requirements to ensure the connection process runs smoothly.
Connect your account
-
Connect to an AWS account by specifying the following:
-
The AWS account number and region or regions you want to connect.
-
The asset types to protect.
-
A region to deploy the stack set.
-
A stack set creation method and create the stack set.
-
-
Deploy Clumio using one of the following methods:
-
Create a stack automatically using CloudFormation with the Create Stack wizard. Clumio recommends this method.
-
Connect to an AWS account using the Terraform template.
-
Create a stack manually. Clumio provides the required template and tokens. This method is useful if you want to review the template or if you are not the owner for all accounts.
-
Manually configure all permissions required to onboard your AWS account with Clumio. This method is useful when you have security requirements that require you to review the permissions required by Clumio to protect your AWS assets.
-
Protect your assets
-
If this is your first time connecting to a data source of any kind, configure security settings for your Clumio account and invite users to Clumio.
-
Create and configure backup policies for the asset types you want to protect. Apply the polices to those assets using protection rules.