---
sourceDocument: Yokohama IT Operations Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/yokohama/it-operations-management

 Release :

    - yokohama

ft:locale :

    - en-US

ft:publication_title :

    - Yokohama IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# Cloud Configuration Governance Scan configuration form

# Cloud Configuration Governance Scan configuration form {#ariaid-title1}

* Release version: Yokohama
* 
* Updated January 30, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

The Cloud Configuration Governance Scan configuration form displays detailed
information about the scan configuration.
{#ccg-scan-configuration-form__table_jmp_4hl_hsb__entry__2}

| Field | Description |
|:-|:-|
| Name | Name that uniquely identifies the scan configuration. |
| Description | Brief description of the scan configuration. |
[ ]

{#ccg-scan-configuration-form__table_jmp_4hl_hsb}

## Configuration tab {#ccg-scan-configuration-form__section_abs_mgl_hsb}

Define the configuration settings, such as cloud provider, policy sets, target service
accounts, and datacenters for the scan.  
{#ccg-scan-configuration-form__table_ogb_3lv_gsb__entry__2}

| Field | Description |
|-|-|
| Cloud provider type | Cloud that hosts the resources to be scanned. |
| Policy sets | Policy sets for the scan. Select one or more policy sets for the scan, and then save the form. |
| Datacenter filters | Service account or service-account datacenter combination for the scan. 1. In the empty row of the Datacenter Filters list, double-click the service account cell, and then select a service account. You can select an Amazon Web Services (AWS) management account, and then add all of its member accounts to the scan configuration, subject to the fulfillment of the following conditions: * An assume role configuration exists for the management account. * Cloud Discovery has completed the datacenter discovery for the member accounts. {#ccg-scan-configuration-form__ul_uyh_qps_25b}For more information on creating assume role configurations, see [Configure temporary credential access for trusted AWS accounts](https://servicenow-prod.fluidtopics.net/tnnDDMp~UwhC6f0GVUN4xg "Configure the trusting account whose resources need to be accessed, to rely on the trusted account using the Identity and Access Management (IAM) role."). 2. Save the form. 3. In the empty row of the Datacenter Filters list, double-click the datacenter cell, and then select a datacenter.If you do not select a datacenter, Cloud Configuration Governance scans all the datacenters that are associated with the service account. {#ccg-scan-configuration-form__ol_ztr_h3l_hsb} |
[ ]

{#ccg-scan-configuration-form__table_ogb_3lv_gsb}

## Filters tab {#ccg-scan-configuration-form__section_mts_t3l_hsb}

(Optional) Specify criteria to filter the cloud resources, and then import their
configuration data from the cloud. If specified, Cloud Configuration Governance only
fetches the configuration of the resources that match the filter criteria. Otherwise, it
fetches the configuration of all the cloud resources.  
{#ccg-scan-configuration-form__table_lbp_2mv_gsb__entry__2}

| Field | Description |
|-|-|
| Tag filters | Cloud resource tags to filter the cloud resources. * Enter the tag name in the Name field. * Enter the tag value in the Value field. {#ccg-scan-configuration-form__ul_pzd_hmv_gsb} |
| Freeform | Option to specify a comma-separated list of cloud identifiers to filter the cloud resources. |
| Resources | Comma-separated list of the cloud identifiers. This field appears only when the Freeform option is selected. |
[ ]

{#ccg-scan-configuration-form__table_lbp_2mv_gsb}

