-
Template update required: The Plerion CloudFormation template has been updated with new permissions. This is flagged by the PLERION-PLN-02 detection. If this finding fails, update the account.

- Enable or disable CWPP: Add or remove the Cloud Workload Protection Platform (CWPP) capability for an existing account.
Steps to update a single AWS account
Automated mode (recommended)
If you onboarded your AWS account using the Automated mode, you can update the CloudFormation stack in one of three ways:- Update existing stack using the AWS Console
- Update existing stack using the CLI
- Create a new stack
Update existing stack using the AWS Console
Open the AWS account you want to update
- On the Plerion dashboard, go to
Settings>Integrations, and find the AWS account you want to update - Click the edit icon next to Role ARN

Copy the AuthToken from Plerion to AWS
Copy the 

AuthToken value from Plerion’s Stack Parameters box into the matching field in AWS.

Update existing stack using the CLI
Open the AWS account you want to update
- On the Plerion dashboard, go to
Settings>Integrations, and find the AWS account you want to update - Click the edit icon next to Role ARN

Create a new stack
Open the AWS account you want to update
- On the Plerion dashboard, go to
Settings>Integrations, and find the AWS account you want to update - Click the edit icon next to Role ARN

Manual mode
If you onboarded your AWS account using Manual mode, update the IAM role directly.Edit the IAM role in AWS
In your AWS account, open the IAM role used by Plerion and edit its configuration.
Apply the updated policy
Replace the trust policy or permissions JSON with the updated values shown in Plerion.
Steps for updating multiple AWS accounts
Open the AWS management account you want to update
- On the Plerion dashboard, go to
Settings>Integrations, and find the AWS management account you want to update - Click the edit icon next to Role ARN
Select Multi Account Onboarding
- On the Edit integration page, click
Update using Multi Account Onboarding. - On the Select capabilities screen, click
Next.

Copy the AuthToken to AWS
Copy the 

AuthToken value from Plerion’s Stack Parameters box into the matching field in AWS.

Set deployment options
On the Set deployment options page in AWS, set Automatic deployment to 
Deactivated.





