在 Systems Manager 中为 Microsoft Azure 设置云连接器
Systems Manager 云连接器是一种在 Systems Manager 与外部云提供商(例如 Microsoft Azure)中的虚拟机(VM)之间建立连接的资源。创建云连接器后,诸如 Automation 和 State Manager 之类的 Systems Manager 服务可以将 Azure 虚拟机像原生托管节点一样进行锁定和管理。
通过云连接器载入的 Azure 虚拟机,其表现与标准的混合激活的 Systems Manager 托管实例一致。可使用相同的工具和工作流程,例如 Run Command、Patch Manager 和 State Manager,与本地和 EC2 节点一起进行管理。
为 Azure 创建云连接器涉及两个重要步骤:
-
创建云连接器,设置 AWS 和 Azure 之间的凭证交换,并支持记录 Azure 资源状态。
-
创建 Systems Manager 云连接器,向 Systems Manager 注册 Azure 租户和订阅目标。
注意
-
云连接器在发布时支持 Microsoft Azure。计划在未来版本中提供对 Google Cloud Platform 的支持。
-
对于每个 AWS 账户,Systems Manager 支持最多 10 个云连接器。每个云连接器支持最多 75 个 Azure 订阅目标。单个 AWS 账户 中的所有云连接器必须针对同一 Azure 租户。
有关 Systems Manager 在连接器设置向导期间代表您创建的 IAM 角色(包括其信任策略和权限策略)的详细信息,请参阅通过 Systems Manager 控制台创建的 IAM 角色。