You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
-**Search**: Enter criteria to find specific tasks.
44
44
1. Select **Apply** to display the criteria you've selected.
45
45
@@ -53,25 +53,25 @@ The **Identities** table displays the results of your query.
53
53
-**Name**: Provides the name of the group.
54
54
- To view details about the group, select the down arrow.
55
55
- The **Domain/Account** name.
56
-
- The **Permission creep index (PCI)**: Provides the following information:
56
+
- The **Permission Creep Index (PCI)**: Provides the following information:
57
57
-**Index**: A numeric value assigned to the PCI.
58
58
-**Since**: How many days the PCI value has been at the displayed level.
59
59
-**Tasks**: Displays the number of **Granted** and **Executed** tasks.
60
60
-**Resources**: The number of resources used.
61
-
-**User groups**: The number of users who accessed the group.
62
-
-**Last activity on**: The date the function was last accessed.
61
+
-**User Groups**: The number of users who accessed the group.
62
+
-**Last Activity On**: The date the function was last accessed.
63
63
- The ellipses **(...)**: Select **Tags** to add a tag.
64
64
65
65
If you're using AWS, another selection is available from the ellipses menu: **Auto Remediate**. You can use this option to remediate your results automatically.
66
66
67
67
## Add a tag to a user
68
68
69
69
1. Select the ellipses **(...)** and select **Tags**.
70
-
1. From the **Select a tag** dropdown, select a tag.
71
-
1. To create a custom tag select **New custom tag**, add a tag name, and then select **Create**.
70
+
1. From the **Select a Tag** dropdown, select a tag.
71
+
1. To create a custom tag select **New Custom Tag**, add a tag name, and then select **Create**.
72
72
1. In the **Value (Optional)** box, enter a value.
73
-
1. Select the ellipses **(...)** to select **Advanced save** options, and then select **Save**.
74
-
1. To add the tag to the serverless function, select **Add tag**.
73
+
1. Select the ellipses **(...)** to select **Advanced Save** options, and then select **Save**.
74
+
1. To add the tag to the serverless function, select **Add Tag**.
75
75
76
76
## Set the auto-remediate option (AWS only)
77
77
@@ -81,73 +81,73 @@ The **Identities** table displays the results of your query.
81
81
82
82
## Apply filters to your query
83
83
84
-
There are many filter options within the **Users** screen, including filters by **Authorization system**, **Identity type**, and **Identity state**.
84
+
There are many filter options within the **Users** screen, including filters by **Authorization System**, **Identity Type**, and **Identity State**.
85
85
Filters can be applied in one, two, or all three categories depending on the type of information you're looking for.
86
86
87
87
### Apply filters by authorization system type
88
88
89
-
1. From the **Authorization system type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
89
+
1. From the **Authorization System Type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
90
90
1. Select **Apply** to run your query and display the information you selected.
91
91
92
-
Select **Reset filter** to discard your changes.
92
+
Select **Reset Filter** to discard your changes.
93
93
94
94
95
95
### Apply filters by authorization system
96
96
97
-
1. From the **Authorization system type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
98
-
1. From the **Authorization system** dropdown, select accounts from a **List** of accounts and **Folders**.
97
+
1. From the **Authorization System Type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
98
+
1. From the **Authorization System** dropdown, select accounts from a **List** of accounts and **Folders**.
99
99
1. Select **Apply** to run your query and display the information you selected.
100
100
101
101
Select **Reset filter** to discard your changes.
102
102
103
103
### Apply filters by identity type
104
104
105
-
1. From the **Authorization system type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
106
-
1. From the **Authorization system** dropdown, select from a **List** of accounts and **Folders**.
107
-
1. From the **Identity type**, select the type of user: **All**, **User**, **Role/App/Service a/c**, or **Resource**.
105
+
1. From the **Authorization System Type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
106
+
1. From the **Authorization System** dropdown, select from a **List** of accounts and **Folders**.
107
+
1. From the **Identity Type**, select the type of user: **All**, **User**, **Role/App/Service a/c**, or **Resource**.
108
108
1. Select **Apply** to run your query and display the information you selected.
109
109
110
-
Select **Reset filter** to discard your changes.
110
+
Select **Reset Filter** to discard your changes.
111
111
112
112
### Apply filters by identity subtype
113
113
114
-
1. From the **Authorization system type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
115
-
1. From the **Authorization system** dropdown, select from a **List** of accounts and **Folders**.
116
-
1. From the **Identity subtype**, select the type of user: **All**, **ED**, **Local**, or **Cross-account**.
114
+
1. From the **Authorization System Type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
115
+
1. From the **Authorization System** dropdown, select from a **List** of accounts and **Folders**.
116
+
1. From the **Identity Subtype**, select the type of user: **All**, **ED**, **Local**, or **Cross Account**.
117
117
1. Select **Apply** to run your query and display the information you selected.
118
118
119
119
Select **Reset filter** to discard your changes.
120
120
121
121
### Apply filters by identity state
122
122
123
-
1. From the **Authorization system type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
124
-
1. From the **Authorization system** dropdown, select from a **List** of accounts and **Folders**.
125
-
1. From the **Identity state**, select the type of user: **All**, **Active**, or **Inactive**.
123
+
1. From the **Authorization System Type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
124
+
1. From the **Authorization System** dropdown, select from a **List** of accounts and **Folders**.
125
+
1. From the **Identity State**, select the type of user: **All**, **Active**, or **Inactive**.
126
126
1. Select **Apply** to run your query and display the information you selected.
127
127
128
-
Select **Reset filter** to discard your changes.
128
+
Select **Reset Filter** to discard your changes.
129
129
130
130
131
131
### Apply filters by identity filters
132
132
133
-
1. From the **Authorization system type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
134
-
1. From the **Authorization system** dropdown, select from a **List** of accounts and **Folders**.
135
-
1. From the **Identity type**, select: **Risky** or **Inc. in PCI calculation only**.
133
+
1. From the **Authorization System Type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
134
+
1. From the **Authorization System** dropdown, select from a **List** of accounts and **Folders**.
135
+
1. From the **Identity Type**, select: **Risky** or **Incl. in PCI Calculation Only**.
136
136
1. Select **Apply** to run your query and display the information you selected.
137
137
138
-
Select **Reset filter** to discard your changes.
138
+
Select **Reset Filter** to discard your changes.
139
139
140
140
141
141
### Apply filters by task type
142
142
143
143
You can filter user details by type of user, user role, app, or service used, or by resource.
144
144
145
-
1. From the **Authorization system type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
146
-
1. From the **Authorization system** dropdown, select from a **List** of accounts and **Folders**.
147
-
1. From the **Task type**, select the type of user: **All** or **High-risk tasks**.
145
+
1. From the **Authorization System Type** dropdown, select the authorization system you want to use: **AWS**, **Azure**, or **GCP**.
146
+
1. From the **Authorization System** dropdown, select from a **List** of accounts and **Folders**.
147
+
1. From the **Task Type**, select the type of user: **All** or **High Risk Tasks**.
148
148
1. Select **Apply** to run your query and display the information you selected.
149
149
150
-
Select **Reset filter** to discard your changes.
150
+
Select **Reset Filter** to discard your changes.
151
151
152
152
153
153
## Export the results of your query
@@ -163,4 +163,4 @@ You can filter user details by type of user, user role, app, or service used, or
163
163
- To view assigned permissions and usage of the group and the group members, see [View analytic information about groups](cloudknox-usage-analytics-groups.md).
164
164
- To view active resources, see [View analytic information about active resources](cloudknox-usage-analytics-active-resources.md).
165
165
- To view the permission usage of access keys for a given user, see [View analytic information about access keys](cloudknox-usage-analytics-access-keys.md).
166
-
- To view assigned permissions and usage of the serverless functions, see [View analytic information about serverless functions](cloudknox-usage-analytics-serverless-functions.md).
166
+
- To view assigned permissions and usage of the serverless functions, see [View analytic information about serverless functions](cloudknox-usage-analytics-serverless-functions.md).
0 commit comments