Resources that Support Policy

Illumio CloudSecure supports writing policy for the following types of resources. Note that policy enforcement is done through Security Groups on AWS and through Network Security Groups on Azure. For a list of all resources that appear in the Inventory page, and additional details such as flow support and attached resources, see Inventory Supported Resources. For a list of all resources that appear in the Cloud Map and Traffic pages, see Cloud Map Supported Resources and Traffic Supported Resources.

  AWS
Category Resource
Compute EC2 Instances
Databases ElastiCache CacheClusters
Databases MemoryDB Clusters
Databases RDS DB Clusters
Databases RDS DB Instances
Data Warehouse Redshift Clusters
Network Routing ElasticLoadBalancingV2 Load Balancers
Serverless Lambda Functions
  Azure
Category Resource
Compute Virtual Machines (inclusive of "spot" VMs)
Compute Virtual Machine ScaleSets
NOTE:
Because CloudSecure may not always discover elastic network interfaces (ENIs), a flow search based on resource IDs will not work for the following supported resources if their Details page does not display the ENI. The workaround is to search using the IP address of the associated ENI, if known:
- AWS RDS DBInstances
- AWS RDS DBClusters
- ElasticLoadBalancingV2 load balancers
- AWS MemoryDB clusters
- AWS ElastiCache for Redis clusters
- AWS Redshift clusters