Enroll cloud virtual machines in Puppet

Bring unmanaged cloud virtual machines (VMs) under Puppet management.

Enrollment installs the Puppet agent on each selected VM using AWS Systems Manager or Azure Run Command. After the agent requests a certificate and it is accepted in Puppet, the VM appears as a managed node.

To enroll cloud VMs in Puppet, you require a Puppet license. For more information, contact our sales team.

Take the following steps:

  1. On the Discovered VMs page, filter the list as required to identify the VMs to enroll.

  2. Use the checkboxes to select VMs to enroll. For quick selection of all VMs whose Puppet management status is Unmanaged or Failed, select the checkbox at the top of the list.

  3. Resolve write access where required. Before a VM can be enrolled in Puppet, write access is required in its associated cloud account so that the Puppet agent can be installed on the VM. Puppet access for the VM is displayed as Required. Update the cloud account to add write access, then return to Discovered VMs to continue with VM enrollment. See Enable write access for VM enrollment.

  4. Click Enroll in Puppet.

  5. Choose the connected Puppet instance to manage the selected VMs. If no instance is connected, select Connect a Puppet instance, complete the guided setup, then return to Discovered VMs to continue with VM enrollment. See Connect to Puppet.

  6. Click Enroll in Puppet to enroll the selected VMs in the selected instance.

  7. In Puppet, approve any pending certificate requests for the VMs. This step is not required if your organization uses auto-sign.

Track progress

Perforce Unified Compliance shows the Puppet management status for each VM:

  • Pending: Command sent, agent installation in progress

  • Managed: PuppetDB reports the node after certificate approval

  • Failed: An error occurred, such as a command issue or network problem. Perforce Unified Compliance provides an error message with a suggested remediation. Address the issue, then click Retry enrollment.