Connect OpenStack
Argus scans an OpenStack cloud read-only from a clouds.yaml file. Nothing
is installed in the cloud, and Argus only ever reads.
Before you start
- Credentials for a read-only project user on the cloud.
- An available account slot: Free connects one account, Pro connects an unlimited number. See Billing & plans.
Provider-side setup
- Use or create a project user with read-only access to what you want scanned. Argus only reads.
- Prepare a
clouds.yamlwith that user's credentials, and note the name of the cloud entry to use from it.
Required permissions
The OpenStack user needs the Reader role (read-only) on the project. Avoid admin or member roles for auditing; a read-only role is enough.
Connect in Argus
Go to Accounts and click Connect account. Pick OpenStack, then the clouds.yaml method. Enter:
| Field | Value |
|---|---|
| Cloud name | a name for this connection |
| clouds.yaml contents | paste the full clouds.yaml file |
| Cloud entry | the cloud name entry to use from that file |
Connection test
Finish the wizard. Argus stores the credential server-side and runs an asynchronous connection test before the first scan. The account card reports Connected, Checking…, or Failed. On a failure, re-check the values above and use Test connection on the account card to retry.