Add your Puppet Enterprise credentials to Security Compliance Management

To allow Security Compliance Management to communicate with Puppet Enterprise, you must add your PE credentials to Security Compliance Management.

Before you begin:
Make sure you have classified the nodes you want to scan in Puppet Enterprise (PE).

Adding your Puppet Enterprise credentials authenticates Security Compliance Management with Role Based Access Control (RBAC).

Your Puppet Enterprise account requires the following permissions. For most versions of Puppet Enterprise, you can add these through your PE console. If you are using Puppet Enterprise 2025.6, add the following permissions except for the three tasks listed in the table. For those cases, follow these instructions to add the required task permissions instead.

TypeActionInstance
ConsoleView-
Job OrchestratorStart, stop and view jobs-
Node GroupsViewAll
NodesView node data from PuppetDB-
TasksRun Tasks

Task: comply::backup_assessor

Permitted on: All nodes

For PE 2025.6, follow these instructions for adding this task permission.

TasksRun Tasks

Task: comply::ciscat_scan

Permitted on: All nodes

For PE 2025.6, follow these instructions for adding this task permission.

TasksRun Tasks

Task: enterprise_tasks::register_application

Permitted on: All nodes

For PE 2025.6, follow these instructions for adding this task permission.

User RolesCreateAll

For more information on permissions, see User permissions and user roles.

  1. In Security Compliance Management — located at https://<COMPLY-HOSTNAME>/ — click Settings.
  2. Click Puppet Enterprise instance.
  3. Enter your Puppet Enterprise hostname, username, and password.
  4. Click Submit.
    You can refresh the Puppet Enterprise node and fact information by clicking Refresh data.
Results
You now see a list of your classified nodes on the Nodes page.
What to do next
You have completed the Security Compliance Management setup process! You can now start running CIS scans on your nodes. If you're new to Security Compliance Management, try out the beginner's guide.