The page has been translated by Gen AI.

How-to guides

Users can create the service by entering the required information for the Config Inspection service and selecting detailed options through the Samsung Cloud Platform Console.

Create Certificate

To create and use the Config Inspection service in the Samsung Cloud Platform Console, you must first generate an authentication key.

Authentication key creation is **My 메뉴 > My Info. > Authentication Key Management > Authentication Key Creation can be created. For more details, please refer to Authentication Key Management.

Reference
  • The expiration period of the authentication key is up to 365 days.
  • To create an authentication key without an expiration date, it must be generated permanently.

Create Config Inspection

You can create and use the Config Inspection service in the Samsung Cloud Platform Console.

Reference
Users must belong to the AdministratorGroup user group in order to use the services provided by the Config Inspection service properly.

To create a Config Inspection, follow these steps.

  1. Click the All Services > Security > Config Inspection menu. 1. Navigate to the Service Home page of Config Inspection.
  2. On the Service Home page, click the Create Config Inspection button. 2. Go to the Create Config Inspection page.
  3. Config Inspection Creation On the page, enter the inputs required to create the service, and select detailed options.
    • Enter or select the required information in the Service Information Input area.
      Category
      required status
      Detailed description
      Diagnosis Type-Automatic configuration via Console
      CloudRequiredSelect cloud to diagnose
      • SCP: Samsung Cloud Platform
      • AWS: Amazon Web Services
      • Azure: Microsoft Azure
      • Detailed input fields vary depending on the selected cloud type
      Diagnostic Target > Diagnosis NameRequiredName to distinguish the diagnostic target
      • Use the entered value as the resource name
      • Enter within 25 characters using English letters, numbers, and special characters (-, _)
      Diagnostic target > Diagnostic accountRequiredConsole information to be diagnosed
      • Select the Account ID to diagnose from the list
      • If the same Account ID is selected, duplicate requests will be made, resulting in additional charges
      • AWS is selected, enter the Account ID (12 digits) for the diagnostic account
      • Azure is selected, enter the Subscription ID (36 characters, including letters, numbers, and special characters) for the diagnostic account
      ChecklistRequiredSelect the checklist to apply during diagnosis
      versionRequiredSelect the checklist version to apply during diagnosis
      Diagnostic Schedule > Diagnostic CycleRequiredAfter selecting Use, choose the diagnostic interval
      • The diagnosis runs on the selected date according to the specified interval
      • If Monthly is selected, the diagnosis may not be performed on the selected date
        • Example) Selecting the 31st of each month – February has no such date, so the diagnosis is not performed
      Diagnostic Schedule > Start TimeRequiredSelect diagnostic start time
      • Set the hour and minute information for starting the diagnostic
      authentication keyRequiredSelect authentication key to use for Open API calls
      • Select button click and, in the Select authentication key popup, choose the appropriate key from the authentication key list
      • If no selectable authentication keys are available, click 인증키 관리 to create a new authentication key
      Pricing planSelectionSelect a plan
      • Standard: Charges are based on the number of diagnoses
      • Monthly subscription: Charges a fixed amount each month regardless of the number of diagnoses (up to 30 diagnoses per month)
      • The plan cannot be changed after service enrollment
      Table. Config Inspection service information input fields
    • Enter or select the required information in the Additional Information Input area.
      Category
      required status
      Detailed description
      tagSelectionAdd Tag
      • Up to 50 per resource can be added
      • After clicking the Add Tag button, input or select Key, Value values
      Table. Config Inspection additional information entry fields
  4. Summary Check the detailed information and estimated charges generated in the panel, and click the Create button.
    • When creation is complete, check the created resources on the Config Inspection List page.

View detailed information of Config Inspection

The Config Inspection service allows you to view and edit the full list of resources and detailed information. On the Config Inspection Details page, it consists of the Detailed Information, Tags, Operation History tabs.

To view detailed information of the Config Inspection service, follow these steps.

  1. Click the All Services > Security > Config Inspection menu. 1. Navigate to the Service Home page of Config Inspection.
  2. On the Service Home page, click the Config Inspection menu. 2. Go to the Config Inspection List page.
  3. Config Inspection List page, click the resource to view detailed information. 3. Config Inspection Details page.
    • Config Inspection Details page displays status information and additional feature information, and consists of Details, Tags, Activity Log tabs.
      CategoryDetailed description
      statusIndicates the status of Config Inspection
      • Ready: When there is no diagnostic request after the service is created (diagnostic request possible)
      • In Progress: When a diagnostic request is being executed (diagnostic request/service termination not allowed)
      • Error: When an error occurs in the diagnostic request (diagnostic request possible)
      • Completed: When the diagnostic request completes successfully (diagnostic request possible)
      Diagnosis requestButton to perform console diagnostics
      Service terminationCancel service button
      Table. Config Inspection status information and additional features

Detailed Information

Config Inspection List page lets you view detailed information of the selected resource and, if needed, modify the information.

Category상세 설명
서비스서비스명
자원 유형자원유형
SRNSamsung Cloud Platform에서의 고유 자원 ID
자원명자원 이름
자원 ID서비스에서의 고유 자원 ID
생성자서비스를 생성한 사용자
생성 일시서비스를 생성한 일시
수정자서비스 정보를 수정한 사용자
수정 일시서비스 정보를 수정한 일시
진단 유형서비스에서 제공하는 진단 유형
클라우드진단 대상 종류
진단 대상진단 대상이 되는 Console 정보
  • 진단 대상의 진단명진단 계정 정보 제공
  • 진단 대상이 AWS나 Azure인 경우 수정 아이콘을 클릭해 진단 계정을 수정할 수 있음
최근 진단 결과마지막으로 실행된 진단 요청 결과
  • 완료: 진단 요청이 정상적으로 완료된 상태
  • 오류: 진단 요청이 정상적으로 완료되지 않은 상태
    • UNAUTHORIZED: 진단 요청에 사용하는 Key 권한 확인 필요
    • INVALID_INPUT_VALUE: 진단 계정 등 입력값 확인 필요
    • CONNECTION_FAIL: 콘솔 접근 제어 설정 확인 필요
    • ETC: 진단 엔진 등 기타 오류로 서비스 데스크를 통해 문의 필요
※ 진단 결과는 Security > Config Insepction > Report 메뉴에서 확인 가능
최근 진단 일시마지막으로 실행된 진단 요청 일시
진단 스케줄선택한 진단 스케줄 정보 표시
  • 진단 대상이 SCP인 경우 수정 아이콘을 클릭해 진단 스케줄을 변경할 수 있음
인증키서비스 생성 시에 등록된 사용자의 인증키
  • Access Key, 사용자, 상태 정보 제공
  • Access Key 정보와 수정 아이콘는 해당 인증키를 생성한 사용자에게만 표시
    • 수정 아이콘을 클릭해 인증키를 변경할 수 있음
  • 인증키가 삭제된 경우에는 - 상태로 표시, 만료된 경우에는 만료로 표시
  • 다른 사용자가 생성한 자원의 인증키 정보(Access Key, 상태)는 -로 표시
체크 리스트선택한 진단 체크 리스트 종류
버전선택한 진단 체크 리스트 버전 정보
버전 상태선택한 진단 체크 리스트 버전 상태
요금제선택한 요금제 종류
Table. Config Inspection detailed information tab items

Tag

On the Config Inspection List page, you can view the tag information of the selected resource and add, modify, or delete it.

구분상세 설명
태그 목록태그 목록
  • 태그의 Key, Value 정보 확인 가능
  • 태그는 자원 당 최대 50개까지 추가 가능
  • 태그 입력 시 기존에 생성된 Key와 Value 목록을 검색하여 선택
Table. Config Inspection tag tab items

Job History

Config Inspection list On the page, you can view the operation history of the selected resource.

구분상세 설명
작업 이력 목록자원 변경 이력
  • 작업 일시, 자원 ID, 자원명, 작업 내역, 이벤트 토픽, 작업 결과, 작업자 정보 확인
Table. Config Inspection job history tab items

Config Inspection Resource Management

If you need to view the status of a Config Inspection resource and request a diagnosis, you can perform the task on the Config Inspection List or Config Inspection Details page.

Modify authentication key

You can select the authentication key to use for each diagnostic target.

To modify the service’s authentication key, follow these steps.

  1. All Services > Security > Config Inspection click the menu. 1. Navigate to the Service Home page of Config Inspection.
  2. On the Service Home page, click the Config Inspection menu. 2. Go to the Config Inspection List page.
  3. On the Config Inspection List page, click the resource to edit the authentication key. 3. Navigate to the Config Inspection Details page.
  4. Check the authentication key and click the Edit icon. 4. Edit Authentication Key The popup window opens.
  5. Edit Authentication Key Select the authentication key to use in the popup window and click the Confirm button.
    구분상세 설명
    인증키인증키 상세 정보
    생성 일시인증키 생성 일자
    만료 일시인증키 만료 일자
    상태인증키의 상태
    • 사용: 사용 가능 상태
    • 만료: 사용 기간 만료 상태
    Table. Authentication key edit popup items
Reference
  • When the authentication key is deleted, it is displayed as - status.
  • The authentication key information (authentication key, status) of resources created by other users is displayed as -.

Request Diagnosis

You can request a diagnosis from the Console based on the configured checklist.

To request a console diagnosis, follow these steps.

  1. Click the All Services > Security > Config Inspection menu. 1. Navigate to the Service Home page of Config Inspection.

  2. On the Service Home page, click the Config Inspection menu. 2. Go to the Config Inspection List page.

  3. Config Inspection List page, click the resource for which you want to request a diagnosis. 3. Go to the Config Inspection Details page.

  4. On the Config Inspection Details page, click the Diagnostic Request button. 4. Diagnostic Request The popup window opens.

  5. Diagnosis Request In the popup window, enter the information required for the diagnosis and click the Confirm button.

    • Diagnostic Request popup window items vary depending on the selected Console.
      구분상세 설명
      콘솔 접근방식Console을 접근하는 방식으로 인증키 방식 고정
      인증키SCP를 선택한 경우 사전에 생성한 인증키 선택
      Access KeyAWS를 선택한 경우 Access Key 입력
      Secret KeyAWS를 선택한 경우 Secret Key 입력
      Client IDAzure를 선택한 경우 Client ID 입력
      Client SecretAzure를 선택한 경우 Client Secret 입력
      Tenant IDAzure를 선택한 경우 Tenant ID 입력
      Table. Diagnosis request popup items
  6. On the Config Inspection List page, check the status value.

    • When the diagnostic request is completed, the status value is displayed as Completed or Error.
    • In the case of Completed, you can view the diagnostic request results in the diagnostic results menu. * For more details, please refer to Diagnostic Result Management.
Reference
For detailed information on the prerequisite settings required to run diagnostics for each console, refer to Preconfigure.

Terminate Config Inspection

You can cancel the Config Inspection service you are not using. Note that if you disable Config Inspection, all stored diagnostic data will be deleted.

Caution
  • If you terminate the resource, all diagnostic data will be deleted, and you will not be able to view diagnostic results in the Report.
  • If the status of the Config Inspection service is In Progress, the service cannot be terminated.

To disable Config Inspection, follow these steps.

  1. All Services > Security > Config Inspection Click the menu. 1. Navigate to the Service Home page of Config Inspection.
  2. On the Service Home page, click the Config Inspection menu. 2. Navigate to the Config Inspection List page.
  3. On the Config Inspection List page, click the resource to be terminated. 3. Navigate to the Config Inspection Details page.
  4. On the Config Inspection Details page, click the Service Termination button.
  5. When termination is complete, check on the Config Inspection List page whether the resource has been terminated.
Checklist
Check dashboard