View a markdown version of this page

Step 1: Create an Amazon Config connector - Amazon Systems Manager
Services or capabilities described in Amazon Web Services documentation might vary by Region. To see the differences applicable to the China Regions, see Getting Started with Amazon Web Services in China (PDF).

Step 1: Create an Amazon Config connector

The Amazon Config connector sets up the credential exchange between Amazon and Azure and enables Amazon Config to record Azure resource state. You must create this before creating the Systems Manager Cloud Connector.

Note

The Amazon Config connector automatically creates a service-linked role for federation. You do not need to create a separate IAM role for this step.

To create an Amazon Config connector for Azure
  1. Create the Amazon Config connector. Replace TENANT_ID with your Azure tenant ID and CLIENT_ID with the application (client) ID of the Azure AD app you created for Amazon Config.

    aws configservice put-connector \ --connector-configuration '{ "azure": { "tenantIdentifier": "TENANT_ID", "clientIdentifier": "CLIENT_ID" } }'

    Note the Arn from the response — you need it in the next step.

  2. Confirm the connector was created:

    aws configservice list-connectors