# Upload new Cloud Rules

**URL:** <https://developer.sailpoint.com/discuss/t/upload-new-cloud-rules/99478>\
**Category:** SHF Discussion and Questions\
**Tags:** identity-security-cloud, rules\
**Created:** [January 30, 2025, 2:23pm UTC](https://developer.sailpoint.com/discuss/t/upload-new-cloud-rules/99478 "2025-01-30T14:23:59Z")\
**Posts on this page:** 9\
**Page:** 1

<div class="post-metadata">

**Author:** ![Markharoll](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/markharoll/32/20455_2.png) [@Markharoll](https://developer.sailpoint.com/discuss/u/Markharoll)\
**Post date:** [January 30, 2025, 2:23pm UTC](https://developer.sailpoint.com/discuss/t/upload-new-cloud-rules/99478/1 "2025-01-30T14:23:59Z")

</div>

Hello community!

I would like to be more autonomous in managing and uploading Cloud Rules to ISC, without requesting every time the intervention of the Expert Services.  
After some searches online I found this post about [Download, Version, and Update IdentityNow Cloud Rules](https://developer.sailpoint.com/discuss/t/download-version-and-update-identitynow-cloud-rules/13593), however, it seems that it can be used to **only update** an already existing rule.

Is there a way to upload **new** Cloud Rules?

---

<div class="post-metadata">

**Author:** ![suresh4iam](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/suresh4iam/32/29513_2.png) [@suresh4iam](https://developer.sailpoint.com/discuss/u/suresh4iam)\
**Post date:** [January 30, 2025, 4:46pm UTC](https://developer.sailpoint.com/discuss/t/upload-new-cloud-rules/99478/2 "2025-01-30T16:46:52Z")

</div>

Hi Marco,  
You cannot create or update the cloud rule without ES support. Even in the post it is instructed that the SailPoint ES should be used to upload (update) the existing cloud rules. Also currently the CC APIs are obsolete to get the cloud rules.

- New Cloud rules or updating existing cloud rules can be done only through ES support
- You can use sp-config to export and import the existing cloud rules into a same or a different tenant.

---

<div class="post-metadata">

**Author:** ![Nicolas\_NAPOLEONI](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/nicolas_napoleoni/32/20765_2.png) [@Nicolas\_NAPOLEONI](https://developer.sailpoint.com/discuss/u/Nicolas_NAPOLEONI)\
**Post date:** [January 31, 2025, 4:59pm UTC](https://developer.sailpoint.com/discuss/t/upload-new-cloud-rules/99478/3 "2025-01-31T16:59:12Z")

</div>

Hi Marco,

We share the same needs, and SailPoint has acknowledged the **frustrations** expressed by customers.

---

<div class="post-metadata">

**Author:** ![mehuljogi](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/mehuljogi/32/8264_2.png) [@mehuljogi](https://developer.sailpoint.com/discuss/u/mehuljogi)\
**Post date:** [January 31, 2025, 5:17pm UTC](https://developer.sailpoint.com/discuss/t/upload-new-cloud-rules/99478/4 "2025-01-31T17:17:01Z")

</div>

Hi @Nicolas_NAPOLEONI,

Yes, you are right about the difficulty of testing cloud rules. SailPoint should add something similar to connector rules

-Mehul

---

<div class="post-metadata">

**Author:** ![mario\_rod](https://avatars.discourse-cdn.com/v4/letter/m/50afbb/32.png) [@mario\_rod](https://developer.sailpoint.com/discuss/u/mario_rod)\
**Post date:** [January 31, 2025, 8:19pm UTC](https://developer.sailpoint.com/discuss/t/upload-new-cloud-rules/99478/5 "2025-01-31T20:19:32Z")

</div>

On that note of cloud rules, what is the API to GET/download cloud rules for a tenant?  
We have a bunch of cloud rules where the source code was not saved in a CM platform and need to be able to view/change them  
Thanks

---

<div class="post-metadata">

**Author:** ![mehuljogi](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/mehuljogi/32/8264_2.png) [@mehuljogi](https://developer.sailpoint.com/discuss/u/mehuljogi)\
**Post date:** [February 1, 2025, 10:15am UTC](https://developer.sailpoint.com/discuss/t/upload-new-cloud-rules/99478/6 "2025-02-01T10:15:08Z")

</div>

Hello @mario_rod ,

Try using sp-config api for getting(exporting) cloud rules.

> **[SP-Config | SailPoint Developer Community](https://developer.sailpoint.com/docs/api/beta/sp-config)**
>
> SP-Config

-Mehul

---

<div class="post-metadata">

**Author:** ![mario\_rod](https://avatars.discourse-cdn.com/v4/letter/m/50afbb/32.png) [@mario\_rod](https://developer.sailpoint.com/discuss/u/mario_rod)\
**Post date:** [February 5, 2025, 5:57pm UTC](https://developer.sailpoint.com/discuss/t/upload-new-cloud-rules/99478/7 "2025-02-05T17:57:21Z")

</div>

Hi @mehuljogi  
I don’t see where cloud rules can be downloaded. None of the GET endpoints seem to have that info:

 ![image](https://global.discourse-cdn.com/sailpoint/original/3X/c/c/ccee066e518a0d2bbf82ab2f4eb608f7efc45853.png)

---

<div class="post-metadata">

**Author:** ![gourab](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/gourab/32/18650_2.png) [@gourab](https://developer.sailpoint.com/discuss/u/gourab)\
**Post date:** [February 5, 2025, 6:08pm UTC](https://developer.sailpoint.com/discuss/t/upload-new-cloud-rules/99478/8 "2025-02-05T18:08:15Z")

</div>

Hi @mario_rod  
As @mehuljogi said , It will be Sp-Config export Api([export-sp-config | SailPoint Developer Community](https://developer.sailpoint.com/docs/api/beta/export-sp-config))

Follow this approach :[Sp-config Rules Exported - #7 by tyler\_mairose](https://developer.sailpoint.com/discuss/t/sp-config-rules-exported/5233/7)

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/sailpoint/original/2X/f/f2136700ed5e3703e0b85e02f6be799dacca7735.png) [@system](https://developer.sailpoint.com/discuss/u/system)\
**Post date:** [April 6, 2025, 6:08pm UTC](https://developer.sailpoint.com/discuss/t/upload-new-cloud-rules/99478/9 "2025-04-06T18:08:43Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
