General

How do I install a Scanner Appliance in Google Cloud?

To install a Scanner Appliance in Google Cloud, follow these step-by-step instructions.

Before you begin the installation process, we highly recommend reviewing the requirements for the Scanner Appliance. This step will ensure a smooth and successful installation of the Scanner Appliance.

System requirements
The system requirements must be set before booting the Scanner Appliance for the first time. Read about the system requirements here:
System requirements for Scanner Appliance

Firewall requirements
To ensure proper communication between the Scanner Appliance and Security Center, it is important to review the following information:
Firewall requirements for Scanner Appliance

Preparation for the Scanner Appliance in Security Center

  1. Make sure you have added a new Google Cloud Scanner Appliance in Security Center, where a token will be created.
  2. Go to Scanner Appliance 
  3. Click Add Appliance -> Cloud.
  4. Set a name for your Scanner Appliance and choose Google Cloud.
  5. Click Next twice.
  6. Add NTP Servers (optional).
  7. Click Finish
  8. Note down the token you received from the Scanner Appliance list. You will use it to initiate the virtual machine in Google Cloud.

Set up the Scanner Appliance in Google Cloud

  1. Log in to your Google Cloud.
  2. Head to the Google Cloud Marketplace.
  3. In the Marketplace, search for Holm Security Scanner Appliance.
  4. Click Launch.
  5. Fill in the details of the terraform under the Deployment service account headline.
    1. Deployment name
    2. Service account name
    3. Service account ID
    4. Zone
  6. Under the Machine type headline, select the recommended amount of memory and CPUs. 
    1. 2 vCPU are the minimum recommended.
    2. 4 vCPUs are recommended.
  7. Under the headline Networking, you can keep the default settings as is, which are recommended:
  8. Click Deploy and wait a couple of minutes for the appliance to complete the deployment.
  9. After the virtual machine has been deployed you can find it in your list of virtual machines.
  10. Once found in the list, click Edit.
  11. Enable connecting to serial ports.
  12. Done!

Configure the virtual appliance interface

Once the machine is booted, you can proceed with the following steps.

We recommend configuring all Google Cloud deployments to use DHCP, as the risk of networking conflicts within Google Cloud is quite high.

  1. In the Appliance console UI, choose:

    1. Configuration > Network and press enter.
    2. Make sure DHCP is selected, save by pressing F11 (Fn+F11). 


    3. Then choose Probe registration, input the token (located under the Scanner Appliance section in Security Center), and press F11 (Fn+F11) to confirm the registration.

  2. Reboot the appliance.
  3. In Security Center, you can check the activation to ensure the scanner was registered correctly.
  4. Done!