AI Defense Integration with Multicloud Defense
Support and Limitations
Depending on how integrated you want your Multicloud Defense tenant and AI Defense to be, we recommend the following use cases and limitations:
-
You must have a Security Cloud Control account prior to accessing either AI Defense or Multicloud Defense.
-
Only egress Multicloud Defense Gateways are currently compatible with AI Defense.
-
If you want the full AI Defense experience with AI Runtime monitoring of LLM prompts and responses, you must "Secure Your Account" and add a Service VPC or VNet to your gateway.
-
Profiles and rulesets created in Multicloud Defense directed to support your AI Defense integration must be modified in the Multicloud Defense Controller; you cannot delete or modify a Multicloud Defense policy or ruleset in the AI Defense dashboard.
-
You must have an AI Defense license. See Administration for more information on I Defense licenses.
Overview
The following list is an overview of the procdure to enable both aspects of these products to allow a secure integration:
-
Log into your Multicloud Defense tenant.
-
Generate an API Key with the Multicloud Defense dashboard.
-
Connect your Multicloud Defense tenant to AI Defense.
-
Onboard a cloud service provider to Multicloud Defense. Be sure to add the correct permissions to your AWS account to allow secure access and communication.
-
Attach your profile to the policy ruleset of an egress gateway.