Skip to main content

Connect OpenStack

Argus scans an OpenStack cloud read-only from a clouds.yaml file. Nothing is installed in the cloud, and Argus only ever reads.

Before you start​

  • Credentials for a read-only project user on the cloud.
  • An available account slot: Free connects one account, Pro connects an unlimited number. See Billing & plans.

Provider-side setup​

  1. Use or create a project user with read-only access to what you want scanned. Argus only reads.
  2. Prepare a clouds.yaml with that user's credentials, and note the name of the cloud entry to use from it.

Required permissions​

The OpenStack user needs the Reader role (read-only) on the project. Avoid admin or member roles for auditing; a read-only role is enough.

Connect in Argus​

Go to Accounts and click Connect account. Pick OpenStack, then the clouds.yaml method. Enter:

FieldValue
Cloud namea name for this connection
clouds.yaml contentspaste the full clouds.yaml file
Cloud entrythe cloud name entry to use from that file

Connection test​

Finish the wizard. Argus stores the credential server-side and runs an asynchronous connection test before the first scan. The account card reports Connected, Checking…, or Failed. On a failure, re-check the values above and use Test connection on the account card to retry.

Official OpenStack documentation​