Configure Service Graph Connector for GCP using SGC Central
Use the playbook available with the SGC Central application to set up the Service Graph Connector for GCP for pulling in GCP project data into the CMDB.
시작하기 전에
Install Service Graph Connector for GCP version 1.8.0 or later from the ServiceNow Store. For ServiceNow Store installation steps, see Install a ServiceNow Store application.
이 태스크 정보
The playbook experience for onboarding connectors is activated with SGC Central in the Service Graph Workspace or CMDB Workspace. To configure the SGC Central application, see Configuring SGC Central and for more information on how to interact with a playbook, see Interact with Playbook.
프로시저
-
Use one of the following methods to open SGC Central:
- Navigate to Workspaces > Service Graph Workspace, and from the left navigation panel, select the Ingestion icon
to open the SGC Central view.
- Navigate to Workspaces > CMDB Workspace > SGC Central.
- Navigate to Workspaces > Service Graph Workspace, and from the left navigation panel, select the Ingestion icon
-
On the Overview page, select Create connection.
팁:Alternatively, you can select Create connection on the All connections page.
- On the Create connection window, select the GCP connector type and then select Create connection.
-
Complete the initial prerequisites when setting up a connection for the first time using a connector.
주:This step is required only during the first-time setup. See Perform initial setup tasks when creating a connection in SGC Central.
-
Complete the prerequisites for setting up the GCP environment.
-
Set up the GCP environment and create a Java KeyStore (JKS) certificate to encrypt the security certificates obtained from a GCP application.
- In the Prerequisites stage of the playbook, select the Review setup instructions activity.
- Select Service Graph connector for GCP - Setup Instructions link to view the setup instructions included in the Service Graph connector for GCP - Setup Instructions [KB1220598] article in the Now Support Knowledge Base.
- Make a note of the destination keystore password. You need to specify this password while importing the JKS certificate into the Service Graph Connector for GCP application.
- Select the I have read the setup instructions check box to confirm that you have set up the GCP environment according to the instructions.
- Select Continue.
- After completing the Review setup instructions activity, select Continue.
-
Create an X.509 certificate to associate the JKS certificate for the GCP application with the Service Graph Connector for GCP.
주:You can skip this step if you're reusing an existing certificate by selecting Skip.
- In the Prerequisites stage of the playbook, select the Create X.509 certificate activity.
- Select New.
- On the form, fill in the fields.
표 1. Create new X.509 Certificate form Field Description Name Name of the X.509 certificate. For example, SG-GCP-509Certificate-Org1.Key store password Password to access the JKS certificate as noted down in the step 5.a.iii. Short description Description of the X.509 certificate. - In the Attachments section, select Add File to browse and upload the keystore.p12 file for the JKS certificate you created in step 5.a.
- Select the I have read the setup instructions check box after you have completed the setup.
- After completing the Create X.509 certificate activity, select Continue.
-
Set up the GCP environment and create a Java KeyStore (JKS) certificate to encrypt the security certificates obtained from a GCP application.
- 옵션:
Download the scripts that are required to enable deep discovery for the Service Graph Connector for GCP.
- In the Prerequisites stage of the playbook, select the Download GCP deep discovery scripts activity.
-
Download the deep discovery scripts for Linux and Windows VMs.
For more information about deep discovery for the Service Graph Connector for GCP, see the Service Graph Connector for GCP - Deep Discovery Setup Instructions [KB2213095] article in the Now Support Knowledge Base.
- After completing the Download GCP deep discovery scripts activity, select Continue.
-
Enter connection details and test the API connection for importing GCP data.
- In the Setup stage of the playbook, select the Create and test connection activity.
-
On the form, fill in the fields.
표 2. Create and test connection form Field Description Connection Name Name to identify the GCP connection record. Service Account Email ServiceNow service account associated with the GCP application. Keystore Name of the X.509 certificate that you created in step 5.b. Keystore Password Password to access the JKS certificate as noted down in the step 5.a.iii. Organization Id ID of the organization associated with the GCP application. Discovery Scope Discovery scope of the GCP application. The available options are: - Organization
- Select Organization when the ServiceNow service account has access to data within the GCP organization.
- Projects
- Select Projects when the ServiceNow service account has access to data within GCP projects only.
- Select Update and test connection.
- Once the connection test is complete, select Continue.
- 옵션:
Configure the deep discovery connection properties.
-
In the Setup stage of the playbook, select the Configure connection properties activity.
If deep discovery is already configured on the connection, the values are pre-populated on the Deep Discovery properties form. For more information about the deep discovery connection properties for GCP, see Deep discovery connection properties.
- Review the pre-populated fields on the Deep Discovery properties form.
- After completing the Configure connection properties activity, select Continue.
-
In the Setup stage of the playbook, select the Configure connection properties activity.
-
Configure the import schedule to import data at regular intervals.
- In the Setup stage of the playbook, select the Configure import schedule activity.
- Select Configure import schedule.
- Expand the Parent scheduled data import within the Import schedules list to select the SG-GCP Organization import schedule.
-
In the Configure import schedule dialog box, select the Active check box, and then fill in the run schedule and time details.
For more information, see Schedule a data import.
-
Select Save.
Alternatively, select Execute Now to execute the import schedule immediately.
- Select Continue.
- In the Setup stage of the playbook, select the Confirm connection creation activity to verify whether the connection was configured.
다음에 수행할 작업
Select View all connections to review the connection details. The configured connection appears in the Installed connections list.