About DigitalOcean
Iru reads Droplets, VPCs, firewalls, team membership, and account settings via the DigitalOcean API using a personal access token as a Bearer credential.How It Works
Official references: Personal access tokens, API reference.
Prerequisites
- Access to API token creation for your team.
Connect DigitalOcean to Iru
- DigitalOcean
- Iru Compliance
Complete this tab before you connect the source in Compliance.
1
Sign in to DigitalOcean
Open cloud.digitalocean.com and sign in with a team member who can create API tokens.
2
Open API in the Control Panel
In the Control Panel, open API from the left navigation or account menu (labels vary slightly by DO UI version).
3
Generate a new token
Select Generate New Token (or Create token) to begin the token wizard.
4
Name the token and set expiry
Enter a name such as Iru Compliance. Set expiration if your policy requires it; otherwise choose the shortest practical lifetime your team allows.
5
Choose read scopes
Enable read (or read-only) scopes for each resource class Iru must evidence, commonly Droplets, VPC, Firewalls, Account, and related objects your controls reference.
6
Generate and copy the token
Create the token and copy it once. DigitalOcean shows it only at creation. Store it in a vault until you paste it into Iru.
Continue on the Iru Compliance tab.
Troubleshooting
Nothing opens when you turn the source on
Nothing opens when you turn the source on
Check pop-up blocker settings for the Iru site and try again.
Missing resource types
Missing resource types
Create a new token with broader read scopes.
Related Articles
Sources Management
Browse and manage every Compliance source.
Getting Started With Compliance
Frameworks, actions, and Artifacts.
Iru Overview
How Endpoint, Compliance, and Identity fit together.
Artifacts Management
Upload, review, and organize evidence from sources and actions.
