This article explains what each Policy Manager suggestion status means, from Not Connected to Ready for review, and when an asset moves from one status to the next.
Overview
The Policy Manager learns how an asset actually behaves and generates an IAM policy suggestion that fits the application's requirements. Each asset carries a status that tells you where it is in that lifecycle and whether the policy suggestion is ready to review.
Track Progress: The status moves from Not Connected through Connected, Waiting For Events, and Profiling to Ready for review as the Suggestion Engine observes activity.
Act Early: You can enforce the current policy during Profiling, before the status changes to Ready for review.
What each status means
What each status means
Statuses follow the order in which an asset moves through the suggestion lifecycle.
Not Connected: The first stage. Connect the cloud provider log repository to Cye Cloud Posture Solution to move the asset forward.
Connected: The asset is ready to start the suggestion lifecycle.
Waiting For Events: The asset is connected to the Suggestion Engine, which is watching for activity related to it. When activity is identified, the status becomes Profiling.
Profiling: The Suggestion Engine learns the asset's behavior and generates a policy that fits the application's requirements. The asset stays in this stage until the analysis is finished and the final version of the policy suggestion is created. You can enforce the current policy during profiling, before the status changes to Ready for review.
Ready for review: The final version of the policy suggestion is ready for you to review. The asset stays in this stage until its behavior changes, then it moves back to Profiling.
Wrap-up / Next Steps
Wrap-up / Next Steps
Connect the log repository: For assets in Not Connected, connect the cloud provider log repository so the Suggestion Engine can start watching for events.
Review suggestions: Open assets in Ready for review in the Policy Manager and review the final policy suggestion.
Get started with the Policy Manager: See Starting Using the Policy Manager.
