diff --git a/cloud/README.md b/cloud/README.md
index 128eda2c..10b6b21d 100644
--- a/cloud/README.md
+++ b/cloud/README.md
@@ -69,26 +69,38 @@ For that, go to the [Web Console](https://auth.otc.t-systems.com/authui/login) a
I strongly advise you, to create a separate project for the T-Pots in your tennant.
In my case I named it `tpot`.
+
+
## Create API user
The next step is to create a new user account, which is restricted to the project.
This ensures that the API access is limited to that project.
+
+
## Import Key Pair
-Now log in with the newly created user account and select your project.
+:warning: Now log in with the newly created user account and select your project.
+
+
Import your SSH public key.
+
+
## Create VPC, Subnet and Security Group
-- VPC and Subnet:
+- VPC (Virtual Private Cloud) and Subnet:
+
+
- Security Group:
The configured Security Group should allow all incoming TCP / UDP traffic.
If you want to secure the management interfaces, you can limit the incoming "allow all" traffic to the port range of 1-64000 and allow access to ports > 64000 only from your trusted IPs.
+
+
# Clone Git Repository
Clone the `tpotce` repository to your Ansible Master: