Create connections
When you create a connection, you define how CloudFlow accesses the resources your flows need. You can either:
-
Create from existing permissions: Reuse the existing permissions for AWS accounts, Azure tenants, or GCP resources already connected to Cloud Intelligence. Select the connected cloud configurations to import. You are the connection Owner. You can assign access to other DoiT users in Manage permissions.
-
Create a new cloud connection: Create an AWS, Azure, or GCP connection, depending on the cloud resources your flow is accessing. Select this if you want to define scope, policies, and deploy IAM roles, Entra ID applications, or service accounts for the connection. You can assign access to other DoiT users in User access.
-
Create an Admin API connection: Create an OpenAI or Anthropic Admin API connection so your flows can call provider administration APIs. These connections are independent of cloud IAM roles and of the OpenAI and Anthropic billing integrations.
Select Create connection from existing permissions when accounts, tenants, or resources are already connected to Cloud Intelligence and you only need a connection for flows. Select Create connection for AWS, Azure, or GCP when you need a dedicated CloudFlow IAM role, Entra ID application, or service account, custom scope (for example AWS organizational units or an Azure management group), or separate policies. For OpenAI and Anthropic Admin API connections, select the provider tab and then Create connection.
See also
See our Github repository that stores connection scripts with supporting documentation and examples.