This article shows you how to connect a single AWS account to Cye Cloud Posture Solution with a CloudFormation stack, and how to optionally connect the account's CloudTrail.
Overview
Cye Cloud Posture Solution, the Cloud Security Posture Management (CSPM) component of the Cye platform, needs read-only access to an AWS account before it can scan it. You grant that access by creating a CloudFormation stack in the account, starting from the Cloud Accounts page of the console.
Connect & Scan: Start the connection from Cloud Accounts, create the CloudFormation stack in your AWS account, and your cloud assets become available for inspection within a few minutes.
Connect CloudTrail (Optional): Link the account's CloudTrail during onboarding, or skip it and connect it later.
Note: To onboard multiple accounts under the same AWS Organization, see Connecting Your AWS Organization instead.
1. Start the connection in the console
1. Start the connection in the console
Every new account connection starts from the Cloud Accounts page.
Log in to the console at console.solvo.cloud and go to Cloud Accounts.
Click Connect account.
2. Create the CloudFormation stack in AWS
2. Create the CloudFormation stack in AWS
The CloudFormation stack creates the read-only role that Cye Cloud Posture Solution uses to scan the account.
Wrap-up / Next Steps
Wrap-up / Next Steps
Connect more accounts: Go to Cloud Accounts > Connect account for each additional AWS account.
Connect an AWS Organization: To onboard every account under one organization or Organizational Unit (OU) with a single StackSet, see Connecting Your AWS Organization.
Review the access you granted: See How Cye Cloud Posture Solution Connects to Your AWS Environment for the full list of permissions in the CloudFormation template.
Start with IAMagnifier: See Starting Using the IAMagnifier, the next article in the AWS onboarding sequence.




