Software Secure Workload
Activity Configure

Edit a GCP Connector

If you want to enable gathering data from different or additional VPCs or GKE clusters, you may need to upload a service account json file with required capabilities with different permissions before you can select different VPCs or GKEs.

Changes are not saved until you finish the wizard.

Procedure

1

From the navigation bar at the left side of the window, choose Manage > Workloads > Connectors.

2

Click GCP Connector.

3

If you have more than one GCP connector, choose the connector to edit from the top of the window.

4

Click Edit Connector.

5

Click through the wizard again and make changes. For detailed descriptions of the settings, see Create a GCP Connector.

6

If you enable different capabilities (gathering labels, ingesting flows, enforcing segmentation, or gathering GKE data), you must download the revised IAM template and upload it to GKE before continuing the wizard.

7

To enable enforcement of segmentation policy, first ensure that you have completed recommended prerequisites described in Best Practices When Enforcing Segmentation Policy for GCP Inventory. On the page that lists the VPCs, select Enable Segmentation for the VPCs on which you want to enable enforcement.

8

If you have already created scopes for any of the selected VPCs, either using the wizard or manually, click Skip this step to complete the wizard.

You can edit the scope tree manually using the Organize > Scopes and Inventory page.

9

If you have not already created any scopes for the selected VPCs and you want to keep the proposed hierarchy, choose the parent scope from above the scope tree, then click Save.