Alibaba Cloud
Alibaba Cloud is a comprehensive cloud computing platform and data integration service that provides access to infrastructure, security, monitoring, and container orchestration resources across Alibaba's global cloud ecosystem. This integration enables querying and monitoring of cloud resources, security configurations, compute instances, storage systems, networking components, and operational metrics within Alibaba Cloud environments.
| Category | Cloud |
| Direction | Query source |
| Sign-in | Static Credentials, Named Profile |
| Query languages | SQLite |
| Tables | 68 |
| Query templates | 262 |
| Website | http://alibabacloud.com |
Before you start
Huntbase can sign in to Alibaba Cloud with any of these methods: Static Credentials, Named Profile. Pick one, create the credential in Alibaba Cloud, then keep it to hand for the Connect step.
Static Credentials
Static Alibaba Cloud access key and secret key (optionally a session token).
- In the RAM console, go to Identities › Users and click Create User. Under Access Mode, select Permanent AccessKey.
- To add a key to an existing RAM user instead, open the user, go to the Credential tab, and click Create AccessKey in the AccessKey section.
- Copy the AccessKey ID and AccessKey secret. The secret is shown only once.
- In Identities › Users, click Attach Policy in the user's Actions column, choose read-only system policies for the services you want to query, and click Confirm.
Permissions:
AliyunOSSReadOnlyAccess(minimum)
- Alibaba Cloud strongly recommends that you don't create an AccessKey pair for your Alibaba Cloud account. Use a RAM user.
- Each connection covers one Alibaba Cloud account.
For the vendor's own instructions, see Alibaba Cloud AccessKey pair documentation.
Use a dedicated, read-only credential for Huntbase where the product allows it. Huntbase only needs to read.
Connect Alibaba Cloud
- Go to Connections and click New connection, or click New connection on the Alibaba Cloud product page.
- On Product, pick Alibaba Cloud and choose the Owner.
- On Details, give the connection a Name and, optionally, a Description.
- On Connect, fill in the settings and credentials described below.
- On Verify, review the summary and click Create & check.
For everything else on the setup page — saving a draft, I'll do this later, and what each check result means — see Connections.
Settings
Where your Alibaba Cloud lives:
| Field | Required | Notes |
|---|---|---|
| Regions | No | The regions to query. If you leave this blank, only a single default region is queried. |
| Profile | No | |
| Auto Retry | No | |
| Max Retry Time | No | |
| Timeout (seconds) | No | |
| Ignore Error Codes | No |
Credentials
Choose a Method, enter a Credential label (for example Production), then fill in the fields for that method.
Static Credentials
| Field | Required | Notes |
|---|---|---|
| Access Key | Yes | The AccessKey ID of a RAM user. Secret — not shown again after you save it. |
| Secret Key | Yes | The AccessKey secret that was shown when you created the key. Secret — not shown again after you save it. |
| Session Token | No | Secret — not shown again after you save it. |
Named Profile
No fields — choose this method to connect without credentials.
Query it
Once connected, Alibaba Cloud can serve these languages in a query tab, and Scout can use it when you ask in Auto:
| Language | Use it for |
|---|---|
| SQLite | SQL over the 68 tables listed below, alongside every other connected source. |
Example: SQLite
Get the login session duration of users — Retrieve the configured login session duration from Alicloud RAM security preferences to understand activity patterns and potential security risks.
select
login_session_duration
from
alicloud_ram_security_preference;
Alibaba Cloud ships with 262 query templates. Find them in Library › Queries — see Query templates.
Tables
Alibaba Cloud adds 68 tables. Browse their columns from Schema in the query bar's ⋯ menu.
All 68 tables
| Table | Contains |
|---|---|
alicloud_account | Alicloud Account |
alicloud_action_trail | Alicloud Action Trail |
alicloud_alidns_domain | Alicloud Alidns Domain |
alicloud_cas_certificate | Alicloud CAS Certificate |
alicloud_cms_monitor_host | Alicloud Cloud Monitor Host |
alicloud_cs_kubernetes_cluster | Alicloud Container Service Kubernetes Cluster |
alicloud_cs_kubernetes_cluster_node | Alicloud Container Service Kubernetes Cluster Node |
alicloud_ecs_auto_provisioning_group | Alicloud ECS Auto Provisioning Group |
alicloud_ecs_autoscaling_group | Elastic Compute Autoscaling Group |
alicloud_ecs_disk | Elastic Compute Disk |
alicloud_ecs_disk_metric_read_iops | Alicloud ECS Disk Cloud Monitor Metrics - Read IOPS |
alicloud_ecs_disk_metric_read_iops_daily | Alicloud ECS Disk Cloud Monitor Metrics - Read IOPS (Daily) |
alicloud_ecs_disk_metric_read_iops_hourly | Alicloud ECS Disk Cloud Monitor Metrics - Read IOPS (Hourly) |
alicloud_ecs_disk_metric_write_iops | Alicloud ECS Disk Cloud Monitor Metrics - Write IOPS |
alicloud_ecs_disk_metric_write_iops_daily | Alicloud ECS Disk Cloud Monitor Metrics - Write IOPS (Daily) |
alicloud_ecs_disk_metric_write_iops_hourly | Alicloud ECS Disk Cloud Monitor Metrics - Write IOPS (Hourly) |
alicloud_ecs_image | AliCloud ECS Image. |
alicloud_ecs_instance | Alicloud Elastic Compute Instance |
alicloud_ecs_instance_metric_cpu_utilization_daily | Alicloud ECS Instance Cloud Monitor Metrics - CPU Utilization (Daily) |
alicloud_ecs_instance_metric_cpu_utilization_hourly | Alicloud ECS Instance Cloud Monitor Metrics - CPU Utilization (Hourly) |
alicloud_ecs_key_pair | An SSH key pair is a secure and convenient authentication method provided by Alibaba Cloud for instance logon. An SSH key pair consists of a public key and a private key. You can use SSH key pairs to log on to only Linux instances. |
alicloud_ecs_launch_template | Alicloud ECS Launch Template |
alicloud_ecs_network_interface | Alicloud ECS Network Interface. |
alicloud_ecs_region | Elastic Compute Region |
alicloud_ecs_security_group | ECS Security Group |
alicloud_ecs_snapshot | ECS Disk Snapshot. |
alicloud_ecs_zone | Elastic Compute Zone |
alicloud_kms_key | Alicloud KMS Key |
alicloud_kms_secret | Alicloud KMS Secret |
alicloud_log_project | Alicloud Log Service (SLS) Project. |
alicloud_log_store | Alicloud Log Service (SLS) Logstore. |
alicloud_oss_bucket | Object Storage Bucket |
alicloud_ram_access_key | Alibaba Cloud RAM User Access Key. |
alicloud_ram_credential_report | Alicloud RAM Credential Report |
alicloud_ram_group | Resource Access Management groups who can login via the console or access keys. |
alicloud_ram_password_policy | Alibaba Cloud RAM Password Policy |
alicloud_ram_policy | Alibaba Cloud RAM Policy |
alicloud_ram_role | Resource Access Management roles who can login via the console or access keys. |
alicloud_ram_security_preference | Alibaba Cloud RAM Security Preference |
alicloud_ram_user | Resource Access Management users who can login via the console or access keys. |
alicloud_rds_backup | ApsaraDB RDS Backup is a policy expression that defines when and how you want to back up your DB Instances. |
alicloud_rds_database | Alibaba Cloud ApsaraDB for RDS (Relational Database Service) is a stable and reliable online database service that scales elastically. |
alicloud_rds_instance | Provides an RDS instance resource. A DB instance is an isolated database environment in the cloud. A DB instance can contain multiple user-created databases. |
alicloud_rds_instance_metric_connections | Alicloud RDS Instance Cloud Monitor Metrics - Connections |
alicloud_rds_instance_metric_connections_daily | Alicloud RDS Instance Cloud Monitor Metrics - Connections (Daily) |
alicloud_rds_instance_metric_cpu_utilization | Alicloud RDS Instance Cloud Monitor Metrics - CPU Utilization |
alicloud_rds_instance_metric_cpu_utilization_daily | Alicloud RDS Instance Cloud Monitor Metrics - CPU Utilization (Daily) |
alicloud_rds_instance_metric_cpu_utilization_hourly | Alicloud RDS Instance Cloud Monitor Metrics - CPU Utilization (Hourly) |
alicloud_security_center_asset | Alicloud Security Center Assets (ECS instances with Security Center agent status) |
alicloud_security_center_field_statistics | Alicloud Security Center Field Statistics |
alicloud_security_center_version | Alicloud Security Center Version |
alicloud_security_center_vulnerability | Alicloud Security Center Vulnerabilities |
alicloud_slb_load_balancer | Alicloud Server Load Balancer |
alicloud_sls_alert | Alicloud Log Service (SLS) Alert. |
alicloud_vpc | A virtual private cloud service that provides an isolated cloud network to operate resources in a secure environment. |
alicloud_vpc_dhcp_options_set | Aliclod VPC DHCP Options Set |
alicloud_vpc_eip | An independent public IP resource that decouples ECS and public IP resources, allowing you to flexibly manage public IP resources. |
alicloud_vpc_flow_log | Alicloud VPC Flow Log |
alicloud_vpc_nat_gateway | Aliclod VPC NAT Gateway |
alicloud_vpc_network_acl | Alicloud VPC Network ACL |
alicloud_vpc_route_entry | Alicloud VPC Route Entry |
alicloud_vpc_route_table | Alicloud VPC Route Table |
alicloud_vpc_ssl_vpn_client_cert | SSL Client is responsible for managing client certificates. The client needs to first complete certificate verification in order to connect to the SSL Server. |
alicloud_vpc_ssl_vpn_server | SSL Server refers to the SSL-VPN server within the VPC. It authenticates clients and manages configurations. |
alicloud_vpc_vpn_connection | VPN Connection is an Internet-based tunnel between VPN Gateway and User Gateway. |
alicloud_vpc_vpn_customer_gateway | Alicloud VPC VPN Customer Gateway. |
alicloud_vpc_vpn_gateway | Alicloud VPC VPN Gateway. |
alicloud_vpc_vswitch | VSwitches to divide the VPC network into one or more subnets. |
Next steps
- Connections — health, credentials and settings after you connect
- Query languages — syntax, parameters and time ranges
- Chatting with Scout — ask questions without writing a query
- All integrations — the rest of the catalog