Checklist: Planning to Deploy ArcSight Capabilities on AWS
The complete process of deploying on AWS includes the following broad steps. Each of these steps is explained in the following sections. Most steps can be performed using either the AWS web UI or through the AWS CLI tool, and each method is explained (where possible).
Use the following checklist to deploy and using AWS. Perform the tasks in the listed order.
|
Task |
See |
---|---|---|
|
1. Review the technical prerequisites and ensure that they are met before beginning the installation | |
|
2. Create and configure the AWS Virtual Private Cloud, including security groups and IAM roles | |
|
3. Create two security groups, one for the bastion host and one for intra-VPC connectivity | Creating Security Groups |
|
4. Prepare the EKS control plane | Creating the IAM Role for EKS |
|
5. Prepare the bastion host, which you will use for access to the AWS deployment environment | |
|
6. Download the required installation files and associated tools | Downloading Installation Tools and Packages |
|
7. Install the Database in AWS | Installing the Database in AWS |
|
8. Prepare the EFS instance used for the AWS deployment environment | Creating the Elastic File System |
|
9. Set up your EKS cluster | Configuring the Elastic Kubernetes Service |
|
10. Create and label the worker nodes, where application processing takes place | Creating and Configuring Worker Nodes |
|
11. Transfer the product images to the ECR | Uploading Product Images to the ECR |
|
12. Prepare the Route 53 DNS routing | Directing the Route 53 Record Set to the ALB |
13. Create and import the user-supplied certificate into Amazon Certificate Manager | Creating the User-Supplied Certificate | |
|
14. Install CDF rudiments so that you can perform a complete installation after load balancer configuration | Bootstrapping CDF |
|
15. Prepare the application load balancer | Creating the Application Load Balancer |
|
16. Install the remaining CDF components and deploy the ArcSight Suite products | Installing CDF |
|
17. Configure access to the CDF management portal and access to re-configuration | Performing Post Installation Network Configuration |
|
18. Deploy ArcSight Suite capabilities using the CDF Management Portal | Deploying ArcSight Products |
19. Apply the hotfix to remediate the log4j vulnerability | Applying the CDF 2021.05 log4j Hotfix | |
20. Get the latest security fixes and enhancements | Upgrading to 22.1.2 |