GCP Organisation not ingesting Projects in Prisma Cloud
2306
Created On 05/10/23 08:19 AM - Last Modified 10/15/24 16:38 PM
Symptom
- GCP Organisation has been onboarded successfully (green status) in Prisma Cloud
- Cloud Account configured for GCP Project Ingestion using the 'Master Service Account' approach
- However, GCP Projects (Active and Running in GCP Cloud Account) are not being discovered in Prisma Cloud Console
Environment
- Prisma Cloud
- Google Cloud Platform (GCP)
Cause
Some of the Common Reasons include:
- Master Service Account (MSA) is not configured properly i.e. the Service Account is not added as an IAM member for the affected Cloud Accounts (Projects)
- During onboarding, a certain folder or the affected Projects were excluded
- Rate limit with the GCP Organisation
Resolution
- Ensure to follow all the steps suggested here : Onboard your GCP Project
- Disable Ingestion for the affected Projects as this should help free up the rate limit
- Ensure the Projects belong to the same GCP Organisation that is onboarded successfully in Prisma Cloud