Integrate Your AssetsCloud

Secure Oracle Cloud Infrastructure (OCI) with Mondoo

Continuously secure your Oracle Cloud Infrastructure (OCI) tenancy with Mondoo.

Mondoo continuously scans your OCI tenancy for misconfigurations and vulnerabilities. Create an OCI integration to give Mondoo the access it needs.

Prerequisites

  • Editor or Owner access to the Mondoo space
  • Access to an OCI tenancy

Create an OCI API key

Mondoo authenticates to OCI with an API key.

  1. Log into the Oracle Cloud Console.

  2. In the top-right corner, select your user profile icon, then My Profile.

    OCI - my profile

  3. In the bottom-left Resources menu, select API keys, then Add API key. To learn more, read Required Keys and OCIDs in the OCI documentation.

    OCI - API keys

  4. Select Download private key to download the PEM certificate.

    OCI - Add API key

  5. Select Add, then Copy to copy the configuration file snippet OCI displays. Keep both the snippet and the PEM file handy for the next section.

    OCI configuration file snippet

Add an OCI integration

Only team members with Editor or Owner access can perform this task.

In the Mondoo App, navigate to the space where you want to add the integration. In the side navigation bar, select Integrations. In the top right, select INSTALL. On the Install Integration page, find the integration you want by browsing a category or searching by name:

  1. Under Cloud Security, select Oracle Cloud Infrastructure.

    Cloud Security integrations on the Install Integration page

  2. Under Choose an integration name, enter a name that identifies the OCI tenancy.

    Oracle Cloud Infrastructure integration form with the integration name and OCI API key steps

  3. Under Provide the config file snippet, paste the configuration snippet you copied earlier.

    Config file snippet, private key upload, and security policies steps of the OCI integration form

  4. Under Provide your OCI private key, select UPLOAD .PEM FILE and choose the private key file you downloaded.

  5. (Optional) Under Enable security policies (optional), enable the policies you want Mondoo to score the tenancy against. You can change them at any time. To learn how policies work, read Manage Policies.

  6. (Optional) Under Set Annotations (optional), select + ADD ANNOTATION to add key-value pairs that Mondoo applies to every asset this integration discovers.

  7. Select START SCANNING.

Manage your integration

To open the integration, navigate to the space and select Integrations in the side navigation bar. Select the Oracle Cloud Infrastructure card, then choose the integration.

The status appears on the integration page under Integration Details:

StatusMeaning
activeThe integration is healthy and scanning.
errorMondoo detected an error during a scan attempt.

At the top of the integration page, select RUN to request a fresh scan, or select the ... (more integration actions) button and then Pause to stop scheduled scans (Resume starts them again). To change the integration's settings, select the edit (pencil) icon.

To remove the integration, select the trash can icon, then select DELETE in the Remove Integration dialog. Mondoo stops scanning the OCI tenancy.

Next steps

On this page