Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Docs: Getting started policy guide #42577

Merged
merged 40 commits into from
Jun 22, 2024
Merged
Show file tree
Hide file tree
Changes from 36 commits
Commits
Show all changes
40 commits
Select commit Hold shift + click to select a range
65c309b
getting started policy guide - draft
mmcallister Jun 6, 2024
9e3f8b9
getting started policy guide - draft
mmcallister Jun 7, 2024
5093d76
getting started policy guide - draft
mmcallister Jun 7, 2024
f8eb0df
getting started policy guide - draft
mmcallister Jun 10, 2024
12ea503
restoring cspell - deleted by mistake
mmcallister Jun 10, 2024
43b3895
getting started policy guide - fixing link
mmcallister Jun 10, 2024
64df9f4
getting started policy guide - fixing link
mmcallister Jun 10, 2024
9685318
getting started policy guide - prose edit
mmcallister Jun 10, 2024
bc194ef
Update docs/pages/access-controls/access-graph.mdx
mmcallister Jun 11, 2024
7e64fdb
getting started policy guide - license edit
mmcallister Jun 11, 2024
9271b16
getting started policy guide - draft
mmcallister Jun 12, 2024
a2b5689
getting started policy guide - draft
mmcallister Jun 12, 2024
a57c40a
policy guide - draft (restoring deleted lock file)
mmcallister Jun 12, 2024
8a2eb95
getting started policy guide draft - page rename
mmcallister Jun 13, 2024
c9e76f4
getting started policy guide draft - page rename
mmcallister Jun 13, 2024
7aa21b9
getting started policy guide draft - page rename
mmcallister Jun 13, 2024
522ebd2
getting started policy guide draft - new pages
mmcallister Jun 14, 2024
5b45027
getting started policy guide draft - new pages
mmcallister Jun 14, 2024
a2a78d0
getting started policy guide draft
mmcallister Jun 14, 2024
1853c30
getting started policy - config
mmcallister Jun 14, 2024
f47354c
getting started policy
mmcallister Jun 14, 2024
c719a0e
getting started policy
mmcallister Jun 14, 2024
1533c2a
getting started policy
mmcallister Jun 14, 2024
de81a04
getting started policy
mmcallister Jun 15, 2024
7f847bc
getting started policy
mmcallister Jun 15, 2024
ae43f36
getting started policy
mmcallister Jun 15, 2024
a68e31c
getting started policy
mmcallister Jun 16, 2024
8943eb3
getting started policy
mmcallister Jun 17, 2024
871eb4a
getting started policy
mmcallister Jun 17, 2024
a020804
getting started policy
mmcallister Jun 17, 2024
0c06da1
getting started policy
mmcallister Jun 17, 2024
ef49a7e
Merge branch 'master' into 2024_policy_getting_started
mmcallister Jun 17, 2024
6829854
getting started policy
mmcallister Jun 17, 2024
4b3800e
getting started policy
mmcallister Jun 17, 2024
ba03c73
getting started policy
mmcallister Jun 17, 2024
5c3a489
getting started policy
mmcallister Jun 17, 2024
d63d848
getting started policy - post-feedback
mmcallister Jun 22, 2024
a7de4ca
Merge branch 'master' into 2024_policy_getting_started
mmcallister Jun 22, 2024
a7f16b3
getting started policy - post-feedback
mmcallister Jun 22, 2024
5625c55
getting started policy - post-feedback
mmcallister Jun 22, 2024
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
31 changes: 22 additions & 9 deletions docs/config.json
Original file line number Diff line number Diff line change
Expand Up @@ -493,11 +493,24 @@
},
{
"title": "Teleport Policy",
"slug": "/access-controls/access-graph/",
"forScopes": [
"enterprise"
],
"slug": "/access-controls/teleport-policy/getting-started-policy/",
"forScopes": ["enterprise", "cloud"],
"entries": [
{
"title": "Teleport Policy Integrations",
"slug": "/access-controls/teleport-policy/policy-integrations/",
"forScopes": ["enterprise", "cloud"]
},
{
"title": "Teleport Policy Connections",
"slug": "/access-controls/teleport-policy/policy-connections/",
"forScopes": ["enterprise", "cloud"]
},
{
"title": "Teleport Policy Usage",
"slug" : "/access-controls/teleport-policy/policy-how-to-use/",
"forScopes":["enterprise","cloud"]
},
{
"title": "Teleport Policy for Self-Hosted Clusters",
"slug": "/access-controls/access-graph/self-hosted/",
Expand Down Expand Up @@ -2411,6 +2424,11 @@
"destination": "/access-controls/introduction/",
"permanent": true
},
{
"source": "/access-controls/teleport-policy/",
"destination": "/access-controls/teleport-policy/getting-started-policy/",
"permanent": true
},
{
"source": "/try-out-teleport/",
"destination": "/",
Expand Down Expand Up @@ -2721,11 +2739,6 @@
"destination": "/server-access/guides/",
"permanent": true
},
{
"source": "/access-graph/",
"destination": "/access-controls/access-graph/",
"permanent": true
},
{
"source": "/database-access/guides/aws-discovery/",
"destination": "/auto-discovery/databases/",
Expand Down
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added docs/img/access-graph/connection_view.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added docs/img/access-graph/graph_view.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added docs/img/access-graph/query_view.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added docs/img/access-graph/search_view.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
230 changes: 0 additions & 230 deletions docs/pages/access-controls/access-graph.mdx

This file was deleted.

4 changes: 2 additions & 2 deletions docs/pages/access-controls/access-graph/aws-sync.mdx
Original file line number Diff line number Diff line change
Expand Up @@ -30,7 +30,7 @@ Access Graph options can be found under the Permission Management section.
Teleport Access Graph discovers AWS access patterns, synchronizes various AWS resources,
including IAM Policies, Groups, Users, User Groups, EC2 instances, EKS clusters, and RDS databases.
These resources are then visualized using the graph representation detailed in the
[Access Graph page](../access-graph.mdx).
[Access Graph page](../getting-started-policy.mdx).

The importing process involves two primary steps:

Expand Down Expand Up @@ -66,7 +66,7 @@ graphical representation thereof.
- A running Teleport Enterprise cluster v14.3.9/v15.2.0 or later.
- For self-hosted clusters, an updated `license.pem` with Teleport Policy enabled.
- For self-hosted clusters, a running Teleport Access Graph node v1.17.0 or later.
Check [Access Graph page](../access-graph.mdx) for details on
Check [Access Graph page](../getting-started-policy.mdx) for details on
how to setup Teleport Access Graph.
- The node running the Access Graph service must be reachable
from Teleport Auth Service and Discovery Service.
Expand Down
Original file line number Diff line number Diff line change
@@ -0,0 +1,30 @@
---
title: Teleport Policy
description: A reference for Access Graph with Teleport Policy.
---

Teleport Policy streamlines and centralizes access management across your entire infrastructure.

Teleport Policy with Access Graph provides a visual representation of the relationships between
mmcallister marked this conversation as resolved.
Show resolved Hide resolved
users, roles, and resources in your organization. It can help you answer questions like:

- What resources can a specific user access?
- What users can access a specific resource?
- What are the relationships between users, roles, and resources?

## Getting started with Teleport Policy

Access Graph is a feature of the [Teleport Policy](https://goteleport.com/platform/policy/) product that is only
mmcallister marked this conversation as resolved.
Show resolved Hide resolved
available to Teleport Enterprise customers.

After logging into the Teleport UI, go to the Management tab. If enabled, Access Graph options can be found
under the Permission Management section.

<Admonition type="note">
Note: For managed Teleport Enterprise customers, Access Graph is enabled by default.
If you are a self-hosted Teleport customer, you will need to set up [Access Graph](./access-graph/self-hosted.mdx) and ensure you have an updated
`license.pem` with Teleport Policy enabled to use it.
</Admonition>

## Next steps
- Set up [Policy integrations](./policy-integrations.mdx) for use with Access Graph.
Loading
Loading