How-to guides
The user can input the necessary information for the Config Inspection service and create the service by selecting detailed options through the Samsung Cloud Platform Console.
Create a certificate
To create and use the Config Inspection service in the Samsung Cloud Platform Console, authentication key creation is required in advance.
API key creation is available at My menu > My Info. > API key management > API key creation. For more information, please refer to API key management.
- The expiration period of the authentication key is up to 365 days.
- To create an authentication key with no expiration date, it must be created as permanent.
Config Inspection creation
You can create and use the Config Inspection service in the Samsung Cloud Platform Console.
To create a Config Inspection, follow these steps.
Click All Services > Security > Config Inspection menu. It moves to the Service Home page of Config Inspection.
On the Service Home page, click the Config Inspection creation button. It moves to the Config Inspection creation page.
Config Inspection Creation page where you enter the necessary inputs for service creation and select detailed options.
- Enter Service Information area, enter or select the required information.
Classification NecessityDetailed Description Diagnosis Type Required Console Cloud Required Select cloud to diagnose - SCP: Samsung Cloud Platform
- AWS: Amazon Web Service
- Azure: Microsoft Azure
- Detailed input items may vary depending on the selected cloud type
Diagnosis target > Diagnosis name Required Name to distinguish diagnosis target - Use the entered value as the resource name
- Use English, numbers, and special characters (
-,_) within 25 characters
Diagnosis target > Diagnosis account Required Diagnosis target is Console information - Select the Account ID to be diagnosed from the list
- If you select the same Account ID, it will be duplicated and an additional fee will be incurred
- If you select AWS, enter the Account ID in the diagnosis account (12-digit number)
- If you select Azure, enter the Subscription ID in the diagnosis account (36 characters including letters, numbers, and special characters)
Diagnosis Schedule > Check List Mandatory Automatically set when Using Diagnosis Schedule is selected Diagnosis Schedule > Diagnosis Cycle Required Diagnosis Cycle Selection - Diagnosis is executed on the selected date according to the specified cycle
- Monthly is selected, diagnosis may not be performed on the selected date
- Example) Monthly 31st selected - February does not have that date, so diagnosis is not performed
Diagnosis Schedule > Start Time Mandatory Diagnosis start time selection - Set the hour and minute information to start the diagnosis
Authentication Key Mandatory Select the authentication key to use for Open API calls - Select button to select the corresponding authentication key from the authentication key list in the Authentication Key Selection popup window
- If there are no selectable authentication keys, create a new authentication key through the Authentication Key Management button
- For more information about authentication keys, see Managing Authentication Keys
Rate Plan Selection Select the rate plan to use - General: Charges are based on the number of diagnoses
- Monthly Fee: Charges are based on a fixed monthly amount regardless of the number of diagnoses (up to 30 diagnoses per month)
- The rate plan cannot be changed after applying for the service
Table. Config Inspection service information input items- Enter Additional Information Please enter or select the required information in the area.
Classification NecessityDetailed Description Tag Select Add Tag - Up to 50 can be added per resource
- Click the Add Tag button and enter or select Key, Value
Table. Additional Information Input Items for Config InspectionIn the Summary panel, check the detailed information and estimated billing amount generated, and click the Create button.
- Once creation is complete, check the created resource on the Config Inspection list page.
Config Inspection detailed information check
Config Inspection service can check and modify the entire resource list and detailed information. The Config Inspection details page consists of detailed information, tags, and work history tabs.
To check the detailed information of the Config Inspection service, follow the next procedure.
- Click on the menu of all services > Security > Config Inspection. It moves to the Service Home page of Config Inspection.
- On the Service Home page, click the Config Inspection menu. It moves to the Config Inspection list page.
- Config Inspection list page, click on the resource to check the detailed information. Move to the Config Inspection details page.
- Config Inspection Details page displays status information and additional feature information, and consists of Details, Tags, Work History tabs.
Classification Detailed Description Status Config Inspection status is displayed - Ready: after service creation, when there is no diagnosis request (diagnosis request possible)
- In Progress: when a diagnosis request is being executed (diagnosis request/service cancellation not possible)
- Error: when an error occurs in the diagnosis request (diagnosis request possible)
- Completed: when the diagnosis request is completed normally (diagnosis request possible)
Diagnostic Request Button that can perform Console diagnosis Service Cancellation Button to cancel the service Fig. Config Inspection status information and additional features
- Config Inspection Details page displays status information and additional feature information, and consists of Details, Tags, Work History tabs.
Detailed Information
On the Config Inspection List page, you can check the detailed information of the selected resource and modify the information if necessary.
| Division | Detailed Description |
|---|---|
| Service | Service Category |
| Resource Type | Service Name |
| SRN | Unique resource ID in Samsung Cloud Platform |
| Resource Name | Resource Title |
| Resource ID | Unique resource ID in the service |
| Creator | Service creator user |
| Creation Time | Time when the service was created |
| Modifier | Service information modified user |
| Modified Time | Time when service information was modified |
| Diagnosis Type | Service-provided diagnosis type |
| Cloud | Diagnostic Target Type |
| Diagnosis Target | Diagnosis target is Console information
|
| Rate Plan | Selected Rate Plan Type |
| Recently diagnosed time | Last executed diagnosis request time |
| Recent diagnosis result | Last executed diagnosis request result
|
| Authentication Key | Registered user’s authentication key when the service is created
|
| Diagnosis Schedule | Displays the selected diagnosis schedule information
|
Tag
On the Config Inspection 목록 page, you can check the tag information of the selected resource, and add, change, or delete it.
| Classification | Detailed Description |
|---|---|
| Tag List | Tag List
|
Work History
Config Inspection 목록 page where you can check the operation history of the selected resource.
| Division | Detailed Description |
|---|---|
| Work history list | Resource change history
|
Config Inspection Resource Management
Config Inspection resource status inquiry and diagnosis request are required in case of Config Inspection list or Config Inspection detail page where work can be performed.
Modifying the authentication key
You can select the authentication key to use for diagnosis by diagnosis target.
To modify the service authentication key, follow these steps.
- Click on the menu for all services > Security > Config Inspection. It moves to the Service Home page of Config Inspection.
- On the Service Home page, click the Config Inspection menu. It moves to the Config Inspection list page.
- Config Inspection list page, click the resource to modify the authentication key. Move to the Config Inspection details page.
- Check the authentication key and click the edit icon. The edit authentication key popup window appears.
- Modify Authentication Key popup window, select the registered authentication key and click the OK button.
Classification Detailed Description Access Key Access Key information of the authentication key Creation Date Access Key Creation Date Expiration Date Access Key Expiration Date Status Authentication key status - In use: available status
- Expired: expiration of usage period status
Fig. Edit Authentication Key Popup Window Items
- If the authentication key is deleted, it will be displayed as
-state. - Authentication key information (Access Key, status) of resources created by other users will be displayed as
-.
Request Diagnosis
You can request a diagnosis from the Console based on the set checklist.
To request a console diagnosis, follow these steps.
Click on the menu for all services > Security > Config Inspection. It moves to the Service Home page of Config Inspection.
On the Service Home page, click the Config Inspection menu. It moves to the Config Inspection list page.
Config Inspection list page, click the resource to request diagnosis. Move to the Config Inspection details page.
Config Inspection details page, click the Diagnosis Request button. Diagnosis Request popup window appears.
Diagnosis Request In the diagnosis request popup window, enter the necessary information for diagnosis and click the Confirm button.
- Diagnostic Request The items in the popup window vary depending on the Console you select.
Classification Detailed Description Console access method The method of accessing the Console, with the authentication key method fixed Check List Fixed as Best Practice when SCP is selected Authentication Key Select the authentication key created in advance if SCP is selected Access Key If you selected AWS, enter the Access Key Secret Key If you choose AWS, enter the Secret Key Client ID Enter Client ID if Azure is selected Client Secret If Azure is selected, enter Client Secret Tenant ID If Azure is selected, enter the Tenant ID Fig. Diagnostic Request Popup Window Items
- Diagnostic Request The items in the popup window vary depending on the Console you select.
Check the Status value on the Config Inspection List page.
- When the diagnosis request is completed, the status value is displayed as Completed or Error.
- Completed case, you can check the diagnosis result in the diagnosis result menu. For more information, please refer to Report management.
Config Inspection disable
You can cancel the unused Config Inspection service. However, if you cancel Config Inspection, all saved diagnostic data will be deleted.
- If you cancel the resource, all diagnostic data will be deleted and you will not be able to view the diagnostic results in the Report.
- If the status of the Config Inspection service is In Progress, the service cannot be cancelled.
To disable Config Inspection, follow the next procedure.
- Click All Services > Security > Config Inspection menu. It moves to the Service Home page of Config Inspection.
- On the Service Home page, click the Config Inspection menu. It moves to the Config Inspection list page.
- Config Inspection list page, click the resource to be canceled. Move to the Config Inspection details page.
- Config Inspection details page, click the service cancellation button.
- Once the cancellation is complete, please check if the resource has been cancelled on the Config Inspection list page.