Key-based Access Overview
NetworkBrain requires AWS public key and secrete key to be configured to access the data from AWS for key-based access. NetworkBrain will use the configured credentials to send HTTP requests via Front Server. Therefore Front Server is required to access the Amazon AWS websites from an Internet access perspective: *.amazonaws.com.
The following diagram shows how to configure the NetworkBrain servers to access your different AWS accounts, named monitored accounts (where the infrastructure data resides). In this deployment model, you will need to create static keys (including public and private keys) for each account and use these keys to access AWS resources.
As the requirement is to access the Amazon AWS website from the Front Server, you may deploy the NetworkBrain Front Servers in your on-prem data center or AWS. And there is no limitation on how to deploy NetworkBrain Front Servers. If you have traditional devices, CPE devices, or devices in the colocation to be discovered, make sure that the Front Server has access to these devices.