AWS Setup Guide: Connect Your Account in 2 Minutes

A. OnBoarding Process
Connect your AWS environment to retrieve billing and cost-optimization recommendations.

The onboarding process offers two setup options to integrate your AWS environment seamlessly — Automated Setup (recommended) and Manual Setup (for custom security requirements).

A1. Automatic Onboarding Recommended
1
Opt In & Log In
2
Launch Stack
3
Retrieve ARN
4
Connected!
💡
Security Note: We are only requesting read-only access along with permissions to start/stop instances and manage auto-scaling (scale up/down). We strictly do not access or read any content stored in your AWS environment.
You are welcome to review the full permission set here: aws-ca-policy.yaml
Setup Process
  1. Log in to your AWS Management Console.
  2. Go to Compute Optimizer (search for "Compute Optimizer" in search bar or visit Console Link) and click Get Started / Opt In if not already enrolled.
  3. Click the button below to launch the pre-configured CloudFormation Template in your browser:

Stack Details & Acknowledging IAM

  • Stack Name: Confirm or customize the name (e.g., finopscontrol-tool-integration).
  • Capabilities: Scroll down to the bottom and check the box to acknowledge: "I acknowledge that AWS CloudFormation might create IAM resources with custom names." This allows creation of read-only roles.
  • Click Create Stack and wait for status: CREATE_COMPLETE.
Connect Console

Once the template completes, go to the Outputs tab in CloudFormation, copy the Role ARN, and paste it here:

A2. Manual Onboarding

If your security policies restrict automatic CloudFormation setups, you can manually establish a secure connection using a cross-account IAM role.

Manual Setup Workflow
1
Create Role
2
Attach Policy
3
Add Inline
4
Save ARN
  1. Select Trusted Entity: In IAM console, create a role for Another AWS Account.
  2. Credentials: Enter Account ID: 654654634301. Check "Require external ID" and enter External ID: 567567.
  3. Attach Managed Policy: Search and check the box for the AWS-managed policy ReadOnlyAccess.
  4. Define Name: Name the role finopscontrol-tool-integration-role.
  5. Adjust Session Duration: Open the newly created role, click Edit under Details, and change Maximum session duration to 12 hours.
  6. Add Inline Policy: Under Permissions, click Add permissions -> Create inline policy. Toggle to the JSON Editor and copy/paste this custom policy to allow scheduler start-stop triggers:
inline-policy.json
📋 Copy
{
  "Version": "2012-10-17",
  "Statement": [
    {
      "Sid": "AllowStartStopScaling",
      "Effect": "Allow",
      "Action": [
        "ec2:StartInstances",
        "ec2:StopInstances",
        "rds:StartDBInstance",
        "rds:StopDBInstance",
        "autoscaling:UpdateAutoScalingGroup"
      ],
      "Resource": "*"
    }
  ]
}
Role Details Summary
Trusted Acc ID:654654634301
Required Ext ID:567567
Managed Policy:ReadOnlyAccess
Max Session:12 hours
Once created, copy the role ARN and submit in the connection form in the same manner as the automated onboarding.
B. DashBoard
Get a unified financial and operational snapshot of your AWS spend, forecast trends, and anomalies.

The Cloudsanalytics Dashboard provides a unified view of AWS cloud spending, forecasted costs, and cost optimization opportunities. It helps organizations gain insights into cloud usage, identify cost-saving opportunities, and make informed financial decisions for efficient cloud management.

B2. Header & Multi-Account Controls
➕ Add Account
⚙ Single / All Accounts
📅 Check History By Date
✦ Ask CloudsIQ
Viewing: prod-account (654654634301) · Refreshed 5m ago
B1. Forecast Summary (Top Metrics)
Forecast Cost
$12,450.00
Projected spend for the next 30 days
▲ 4.2% from last month
Forecast Possible Saving
$2,219.00
Total potential monthly optimization savings
▼ $312 from last week
% of Forecast Possible Saving
17.8%
Proportion of spend that can be optimized
B3. Optimization Recommendations (Visual Insights)

Five metrics highlight potential cost reductions compared against current usage levels:

EC2 Cost vs. Savings
Current
$276.38
Payable
$254.19
Potential Saving: $22.19/mo
EBS Cost vs. Savings
Current
$9.94
Payable
$9.94
Potential Saving: $0.00/mo
RDS Cost vs. Savings
Current
$450.00
Payable
$360.00
Potential Saving: $90.00/mo
B4. Cost & Usage Insights
Cost By Service (Top 6)
EC2 Compute$5,230.12
Amazon RDS$1,890.45
Amazon S3$1,420.10
Unused Resources Savings
Idle EC2 Instances$182.40/mo
Unattached Elastic IPs$28.50/mo
Aged EBS Snapshots$98.10/mo
B5. Daily Cost Trend & Anomaly Detection 2 Anomalies · 1 High · 1 Low
Daily Cost (30 Days) & Anomaly Event Logs
High Anomaly Detected: +$145
B6. Optimizer Recommendations Table
⚙ Columns
🔍 Filters
☰ Density
⬇ Export CSV
Resource Type Resource Name Account Region Savings $/mo Finding
EC2 payment-gateway-instance 654654634301 ap-south-1 $18.10 Overprovisioned (m5.large)
Elastic IP unattached-ip-01 654654634301 us-east-1 $7.30 Unattached EIP
RDS staging-db-postgres 654654634301 eu-west-1 $90.00 Idle DB (db.r5.xlarge)
B7. Service-wise Cost Breakup Trend
Service Name Total Cost 31 Oct 2025 1 Nov 2025 2 Nov 2025 Daily Trend
AWS Cost Explorer $19.87 $3.03 $2.99 $3.02 ▬▬▬
Amazon VPC $14.41 $2.16 $2.16 $2.16 ▬▬▬
Amazon Route 53 $1.57 $0.01 $1.51 $0.01 ▲▼▲
CloudWatch $0.59 $0.09 $0.09 $0.09 ▬▬▬
B8 & B9. Recommendations Summary (Actionable Insights)
Dashboard Action Items
Rightsizing: Move to lower cost instances
Service: EC2
$22.192 /mo
Delete Unused EBS snapshots > 6 months
Service: EBS snapshots
$2.20 /mo
ROI: EC2 Compute Savings Plans
Service: ROI
$70.907 /mo
Total Potential Savings: $0.10K / month
B9. Detected Anomaly Details
Anomaly Count:1 Detected
Impacted Service:Amazon EC2
AWS Region:us-east-1
Daily Normal:$45.10
Spike Cost:$190.10 (+321%)
Trigger Severity:High
C. Optimization (Resource Rightsizing)
Rightsizing and cost recommendations across active AWS services.
C1. EC2 Instance Optimization
EC2 Current Cost
$276.38
Total active EC2 monthly spend
Potential Savings
$22.19
Monthly savings from rightsizing recommendation
Payable (After Opt)
$254.19
Remaining EC2 cost after optimizations
Combined Recommendations
Cloudsanalytics Engine
AWS native (Compute Optimizer)
Column Name Description / Value
OnDemandPriceValue Current hourly on-demand rate of the instance type.
OnDemandMonthlyPrice Estimated monthly cost calculated based on average runtime.
RecommendedOnDemandPrice Suggested optimized hourly cost after resizing/reconfiguring.
RecommendedOnDemandMonthlyPrice Projected monthly cost after applying recommendations.
Remark(s) Details of recommendation (e.g. "EC2 Right Sizing – move to t2.small").
RecommendedBy Identifies optimization source (e.g. "Cloudsanalytics" or "AWS").
Example Insight 1
Instance: production-micro-web

Current: $36.20/mo · Recommended: $18.10/mo

Recommendation: Move to t2.small
Example Insight 2
Instance: staging-cache-server

Current: $8.17/mo · Recommended: $4.09/mo

Recommendation: Move to t3.nano
C2. EBS Volume Optimization

Analyzes Amazon Elastic Block Store (EBS) volumes within your AWS environment, checks for idle storage, and details potential volume-type upgrades (e.g. gp2 to gp3).

Total EBS Cost
$9.94
Total active EBS volume spend
Recommended Saving
$0.00
No current EBS savings identified
EBS Idle Capacity
0 GB
No unattached storage detected
Volume State Volume Type Size IOPS Throughput Optimization Meaning
in-use gp3 20 GB 3000 250 MB/s Active SSD volume with moderate size and high performance configurations.
in-use gp2 20 GB 100 125 MB/s Uses older gp2 type. Candidate for upgrade to gp3 to optimize cost by ~20%.
C3. RDS Database Optimization

Review Amazon RDS cost profiles, active db instances, and scheduling recommendations to stop databases during off-business hours.

  • Combined Recommendations: Merged insights from AWS compute optimizer and Cloudsanalytics.
  • Cloudsanalytics Recommendations: Proprietary database rightsizing recommendations based on CPU load and connection pools.
  • AWS Recommendations: Native advice (e.g. multi-AZ cost savings, serverless DB adjustments).
C4. S3 Storage Optimization
Total Storage
154.76 GB
Total Objects
334,874
Avg Object Size
484.60 KB
Bucket Name Storage Class Status Region Objects Count Savings Action
cloudsanalytics-logs Standard Active ap-south-1 124,534 Enable Lifecycle to Intelligent-Tiering
temp-exports-tmp Standard Active us-east-1 210,340 Delete uncompleted multipart uploads
C5. Auto Scaling Group (ASG)
ASG Healthy Count
3 Groups
Unhealthy Count
0 Groups
Potential ASG Savings
$0.00 /mo
C6. Elastic IP Savings
Summary IP Costs
$7.30
Monthly charge for unattached address
Action Required
Elastic IPs Table
Elastic IP Address Region Associated Instance ID Domain Scope
54.210.12.98 us-east-1 [Unattached / Idle] VPC
13.233.90.11 ap-south-1 i-0c00f795cea31bdab VPC
C7. EBS Snapshot Retention
0-6 Months Cost
$1.20
Less than 1 Year Cost
$1.00
1+ Years Cost
$0.00
Total Snapshot Spend
$2.20
C8. RDS Snapshot Optimization

Identifies long-retained or redundant database backups, and suggests lifecycle purging strategies to lower storage fees.

C9. Savings Plans (ROI)
Before recommended SP purchase
$197.00
Current monthly on-demand baseline spend
After recommended SP purchase
$122.00
Projected monthly spend after applying SP
Estimated Savings
$74.00
Monthly SP reduction (37.5% ROI)
D. Inventory (Scheduler & Scan)
Power down idle non-production systems automatically using schedules or resource tags.
D2. EC2 Scheduling Module

The Cloudsanalytics EC2 Scheduling Module allows you to manage instance runtime through four key scheduling actions:

1. Start Now
Instantly wake up a stopped instance. State updates to Running in real time.
2. Stop Now
Force instant shutdown to prevent leakage. State updates to Stopped.
3. Schedule Idle Shutdown
Specify maximum idle days (e.g. 1 day). Shuts down the instance when idle metric is met.
4. Schedule Shutdown
Set specific daily start/stop hours based on your local timezone (e.g. Chennai, Kolkata).
D3 - D5. Database, Scaling Group & Tag Scheduler
D3. RDS DB Scheduler
  • Stop/Start RDS Instances
  • Schedule db clusters and standalones
  • Ideal for developer staging DBs
D4. ASG Scheduler
  • Adjust min/max/desired capacities
  • Scale to 0 instances on weekends
  • Restores baseline during work hours
D5. Tag Start/Stop
  • Targets multi-cloud resources
  • Triggered by tags: env:staging
  • Isolates and alerts untagged nodes
D6. AWS Cloud Cost Estimator

Before deploying new systems, run simulated estimates based on your planned specifications:

Configuration Input
AWS Region:Asia Pacific (Mumbai)
Tenancy Type:Shared hardware (Default)
Operating System:Linux (Amazon AMI)
Instance Family:General Purpose (t3, t4g)
vCPUs / RAM:2 vCPUs / 4 GiB Memory
Estimated Output
$14.20
per month (On-demand pricing)
D7. Agentless Global Scan

Discover active services and resources globally across all AWS regions with a single scan click.

Active Regions
12 regions
Total Monitored Nodes
542 resources
Sync Latency
< 10 seconds
E. Security (Compliance & Governance)
Verify least-privilege configurations, IAM credentials, and check configurations against AWS benchmarks.
E1. Account Security Scan Overview
Total Findings
3,237 checks
Passed
1,802 checks
Failed
1,430 checks
Compliance Rating
55.7%
Status Severity Service Check Title Resource ID
Failed High IAM IAM role has wildcard policy permissions finopscontrol-tool-integration-role
Passed Low S3 Bucket block public access is enabled cloudsanalytics-logs
Failed Medium EC2 EC2 instance security group allows 0.0.0.0/0 on SSH (port 22) payment-gateway-instance
F. Billing Portal
Analyze cloud spending trends, data transfer volumes, and cost console dashboards.
F1. Cloud Cost Console
Year: 2025
Month: October
Total Zero-Cost Services
13 services
Total Services
30 services
Total monthly Cost
$307.84
F2. Cost Explorer Dimension Metrics
Granularity: Monthly
Dimension: Service Name ▾
Dimension-wise cost breakup
EC2-Other
$62.04
AWS Lambda
$55.41
VPC
$18.08
Monthly spend trend
Aug
Sep
Oct
F3. Data Transfer Costs

Tracks network throughput (GB/TB) and cross-region traffic costs.

Total regions active
4 regions
Total data transfer cost
$6.28
G. Settings
Manage accounting invoices, platform team permissions, and alert channels.
G1. Invoice History
Invoice # Billing Period Amount Status Actions
INV-2025-0098 Oct 1 - Oct 31, 2025 $307.84 Paid 📥 PDF
INV-2025-0087 Sep 1 - Sep 30, 2025 $289.12 Paid 📥 PDF
G2. User Access & Roles
Name Email Role Verification Status
Manish Agrawal manish+test_1@cloudsanalytics.ai Admin Verified
Ashish Sharma ashish+test_0022@cloudsanalytics.ai Read Only Pending Link
G3. Alerts & Notifications
Email Alerts
Weekly PDF Reports

Receive weekly PDF summaries

Instant Anomaly Alerts

Alert when spike > $100

Slack Bot Integration
Staging Stop Notifications

Alert when scheduler runs

Security Scan Warnings

Daily warning of failed checks

H. DevOps Console (SSH & Deployments)
Configure server credentials, deploy packages, and monitor instance health.
H1. Setup SSH Infrastructure Connections
DevOps Connections
1 Connection
Monitored SSH hosts directory
Active Status
1 Active
Reachability status checks
Outbound Whitelist IP
5.223.50.175
Ensure this IP is allowed in security groups
Name Infra Type Host (IP Address) Status Key Type
host1 AWS EC2 13.235.102.233 Active PEM File Key
H2 & H3. Deploy Services & Command Console
H2. Software Deployments
H3. Execute Remote Custom Command
SSH: host1 (ubuntu@13.235.102.233)
Console Active
ubuntu@host1:~$ echo "Deploying update..."
Deploying update... [SUCCESS]
ubuntu@host1:~$ _
H4. Real-time Infrastructure Monitoring
CPU Utilization (p95)
Current Load: 70% (Peak: 95%)
Memory Utilization (p95)
Current Memory: 82% (Flatline)