Skip to main content

Alibaba Cloud

Cloudaware ingests configuration and inventory from Alibaba Cloud accounts using either RAM roles (recommended) or RAM users with access keys.

info
  • Audience: Cloudaware administrators, cloud engineers, operations, and security teams
  • Outcome: Alibaba Cloud accounts are connected to Cloudaware for inventory, configuration, and cross-cloud reporting

Use this section to prepare Alibaba Cloud, grant least‑privilege access, connect accounts, and validate ingestion.

What the Alibaba Cloud Integration Provides

  • Unified CMDB objects for Alibaba accounts, regions, ECS compute, disks, networking (VPC, security groups, SLB), OSS buckets, ACK (Kubernetes), Function Compute, SAE, and more.
  • Flexible authentication via cross‑account RAM roles with External IDs or dedicated RAM users and access keys.
  • Cross‑cloud reporting and policies that correlate Alibaba Cloud data with AWS, Azure, GCP, and other providers.

Integration Workflow

Work through the guides in this section in the following order:

  1. Prerequisites — What you need in Cloudaware and Alibaba Cloud before starting.
  2. Least-Privilege Policies — Recommended RAM roles, policies, and access‑key usage for read‑only discovery.
  3. Setup — Step‑by‑step configuration using RAM roles or access keys to connect accounts.
  4. Verification — How to confirm that data is flowing and accounts are healthy.
  5. Troubleshooting — Common issues, diagnostics, and resolution steps.

See also:

  • Service Coverage — Summary of Alibaba services and object families discovered by Cloudaware.
  • Resource Coverage — Details about Alibaba resources discovered by Cloudaware.