GCP Organisation not ingesting Projects in Prisma Cloud

GCP Organisation not ingesting Projects in Prisma Cloud

2306
Created On 05/10/23 08:19 AM - Last Modified 10/15/24 16:38 PM


Symptom


  • GCP Organisation has been onboarded successfully (green status) in Prisma Cloud
  • Cloud Account configured for GCP Project Ingestion using the 'Master Service Account' approach
  • However, GCP Projects (Active and Running in GCP Cloud Account) are not being discovered in Prisma Cloud Console


Environment


  • Prisma Cloud
  • Google Cloud Platform (GCP)


Cause


Some of the Common Reasons include:
  1. Master Service Account (MSA) is not configured properly i.e. the Service Account is not added as an IAM member for the affected Cloud Accounts (Projects)
  2. During onboarding, a certain folder or the affected Projects were excluded
  3. Rate limit with the GCP Organisation


Resolution


  1. Ensure to follow all the steps suggested here : Onboard your GCP Project
  2. Disable Ingestion for the affected Projects as this should help free up the rate limit
  3. Ensure the Projects belong to the same GCP Organisation that is onboarded successfully in Prisma Cloud


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000g1kSCAQ&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language