You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: pages/account/concepts.mdx
+4Lines changed: 4 additions & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -50,6 +50,10 @@ Multifactor authentication (MFA) is any form of verification that requires two f
50
50
51
51
A password is a string of characters associated to your account's email address that allows you to access the [Scaleway console](https://console.scaleway.com/). It is personal and must not be shared with anyone. Alternatively, you can use a [magic link](#magic-link) to authenticate yourself.
52
52
53
+
## Single Sign-on (SSO)
54
+
55
+
Single Sign-On (SSO) allows you to use your Google or Microsoft account to log in to the console. To do so, make sure the email address associated with your Scaleway account matches the email address of your Google or Microsoft account.
56
+
53
57
## Support plan
54
58
55
59
Scaleway provides four different types of [support plans](https://console.scaleway.com/support/plans): Basic, Silver, Gold and Platinum. Your support plan determines the level of service and dedicated assistance you have access to, and the guaranteed response time of your support requests. You can [configure your support plan in the console](/account/how-to/configure-support-plans/).
Copy file name to clipboardExpand all lines: pages/account/how-to/log-in-to-the-console.mdx
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -41,7 +41,7 @@ A confirmation email is sent to your inbox, confirming that you have authenticat
41
41
Scaleway provides Single Sign-On (SSO) options for a seamless login experience. You can use your Google or Microsoft account to log in to the console. To do so, make sure the email address associated with your Scaleway account matches the email address of your Google or Microsoft account.
42
42
43
43
1. Open your web browser and go to the [Scaleway console](https://console.scaleway.com).
44
-
2. Click the **Log in with Google**, **Log in with Microsoft**, or **Log in with GitHub** button, depending on the account you want to use.
44
+
2. Click the **Log in with Google**, **Log in with Microsoft**, or **Log in with GitHub** button, depending on the account you want to use.
45
45
3. You will be redirected to the respective login page of Google, Microsoft or GitHub.
46
46
4. If multifactor authentication (MFA) is activated, enter the authentication code.
Copy file name to clipboardExpand all lines: pages/account/how-to/use-2fa.mdx
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -34,7 +34,7 @@ Download the app of your choice and install it onto your smartphone.
34
34
35
35
1. Click your Organization name on the top-right corner of the console navigation menu, click **Profile**, then **Security**.
36
36
<Messagetype="important">
37
-
If you are logged in as an [IAM member](/iam/concepts/#member), Click **Profile**, then **Credentials** and scroll down to the **Multifactor authentication** section.
37
+
If you are logged in as an [IAM Member](/iam/concepts/#member), Click **Profile**, then **Credentials** and scroll down to the **Multifactor authentication** section.
38
38
</Message>
39
39
2. Click **Enable MFA**, in the **Multifactor authentication** section. A pop-up displays.
40
40
3. Enter the code shown on the pop-up into your MFA app, or scan the QR code into your app.
@@ -71,7 +71,7 @@ If you no longer have access to the device in which you set up your MFA, you can
71
71
## How to disable MFA
72
72
73
73
<Messagetype="important">
74
-
You cannot disable MFA if you are a member of one or more Organizations where MFA is enforced. If you wish to disable MFA, you must first leave these Organizations. If you do not know which of your Organizations enforce MFA, follow the procedure below until step 2. The Organizations will be listed in the **Disable MFA** pop-up.
74
+
You cannot disable MFA if you are a Member of one or more Organizations where MFA is enforced. If you wish to disable MFA, you must first leave these Organizations. If you do not know which of your Organizations enforce MFA, follow the procedure below until step 2. The Organizations will be listed in the **Disable MFA** pop-up.
75
75
</Message>
76
76
77
77
1. Access the [Security](https://console.scaleway.com/account/security) tab of your **User Account** page.
Copy file name to clipboardExpand all lines: pages/iam/concepts.mdx
+3-1Lines changed: 3 additions & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -68,7 +68,9 @@ You can also create non-human users in your Organization, called [IAM applicatio
68
68
69
69
## Member
70
70
71
-
You are a Member when you are added to an Organization by an Owner or user with IAM Manager permissions. Members exist only within the specific Organizations in which they are created. As a Member you are subject to [complying with the security requirements](/iam/how-to/log-in-as-a-member#how-to-comply-with-security-requirements) in effect in your Organization.
71
+
You are a Member when you are added to an Organization by an Owner or user with IAM Manager permissions. Members exist only within the specific Organizations in which they are created. This is one of the methods employed at Scaleway to allow Organizations to have multi-users. Members fufill the same purpose as Guest, while ensuring the security of the Organization.
72
+
73
+
As a Member you are subject to [complying with the security requirements](/iam/how-to/log-in-as-a-member#how-to-comply-with-security-requirements) in effect in your Organization.
Copy file name to clipboardExpand all lines: pages/iam/how-to/accept-invitation-to-orga.mdx
+3-1Lines changed: 3 additions & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -22,7 +22,9 @@ When you [create a Scaleway account](/account/how-to/create-an-account/), an Org
22
22
When someone invites you to join their Organization, you receive an email to inform you.
23
23
24
24
<Messagetype="important">
25
-
If the Organization you were invited to [enforces MFA](/organizations-and-projects/how-to/enforce-mfa/), make sure you have [activated MFA](/account/how-to/use-2fa/) before accepting the invitation.
25
+
Keep in mind that:
26
+
- The procedure described on this page applies only to [IAM Guests](/iam/concepts/#guest)
27
+
- If the Organization you were invited to [enforces MFA](/organizations-and-projects/how-to/enforce-mfa/), make sure you have [activated MFA](/account/how-to/use-2fa/) before accepting the invitation.
Copy file name to clipboardExpand all lines: pages/iam/how-to/comply-with-sec-requirements-member.mdx
-6Lines changed: 0 additions & 6 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -40,12 +40,6 @@ Once the grace period is over, your Member account is automatically locked and y
40
40
41
41
For example, if your Organization's grace period is set to default, you have 7 days, starting from your first login, to renew your password or define a new one, and to set up MFA. If you fail to comply until the 11:59 p.m. of the 7th day, you will get locked out of the Organization at 00:00 a.m. of the 8th day.
42
42
43
-
### Maximum login attempts
44
-
45
-
Currently, a default number of a maximum 5 login attempts is set up for all Scaleway Organizations.
46
-
47
-
This means that if you fail to login five times, you will be blocked from your Organization and you must contact your administrator.
48
-
49
43
## How to update a password
50
44
51
45
Passwords are not required for a first Member login.
Copy file name to clipboardExpand all lines: pages/iam/how-to/enforce-security-requirements-members.mdx
+2-5Lines changed: 2 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,10 +1,10 @@
1
1
---
2
2
meta:
3
3
title: How to enforce security requirements for IAM members in your Organization
4
-
description: This page shows you how to edit the grace period IAM members have to comply with security requirements, enforce password renewal and define a maximum number of login attempts.
4
+
description: This page shows you how to edit the grace period IAM members have to comply with security requirements and enforce password renewal.
5
5
content:
6
6
h1: How to enforce security requirements for IAM members
7
-
paragraph: This page shows you how to edit the grace period IAM members have to comply with security requirements, enforce password renewal and define a maximum number of login attempts.
7
+
paragraph: This page shows you how to edit the grace period IAM members have to comply with security requirements and enforce password renewal.
8
8
dates:
9
9
validation: 2025-02-11
10
10
posted: 2025-02-11
@@ -77,8 +77,5 @@ From their first login, members have a default grace period of seven days to com
77
77
4. Define the grace period in hours or days.
78
78
5. Click **Define grace period** to confirm.
79
79
80
-
## How to set a maximum number of login attempts
81
-
82
-
Currently, a default number of a maximum 5 login attempts is set up for your Organization automatically.
Copy file name to clipboardExpand all lines: pages/iam/how-to/manage-members.mdx
+5-4Lines changed: 5 additions & 4 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -26,19 +26,21 @@ dates:
26
26
4. (Optional) Check the box if you want to send a welcome email to the Member.
27
27
5. Add a password.
28
28
<Messagetype="note">
29
-
This step is optional. If you set a password, make sure you keep note of it to share it with the Member later. The password will only be shown once. From their first login, the Member has up to seven days to update their password and comply with this security requirement.
29
+
This step is optional. If you set a password, make sure you keep note of it to share it with the Member later. The password will only be shown once. If password renewal is enforced in the Organization, from their first login, the Member has up to 7 days to update their password and comply with this security requirement.
30
30
</Message>
31
31
6. (Optional) Check the box if you want to send the password to the Member via email.
32
32
7. Click **Create Member**.
33
33
34
-
If you did not send an invitation email to the Member, make sure you give them their login information.
34
+
If you did not send an welcome email to the Member, make sure you give them their login information.
35
35
36
36
## How to lock a Member
37
37
38
38
As an Owner or user with IAM Manager permissions, you can lock a Member anytime.
39
39
40
40
<Messagetype="important">
41
-
Locking is an action that only applies to IAM Members. Once a Member is locked, they cannot log into the Organization, but are not removed from it.
41
+
Locking is an action that only applies to IAM Members. Keep in mind that:
42
+
- Once a Member is locked, they cannot log into the Organization, but are not removed from it.
43
+
- Any API keys attached to a Member lose their permissions when the Member is locked.
42
44
</Message>
43
45
44
46
1. Click **Identity and Access Management (IAM)** on the top-right corner of your [Organization Dashboard](https://console.scaleway.com/organization) in the Scaleway console. The **Users** tab of the [Identity and Access Management dashboard](https://console.scaleway.com/iam/users) displays.
@@ -99,7 +101,6 @@ Refer to the dedicated [How to enforce security for Members](/iam/how-to/enforce
99
101
-[How to enforce password renewal](/iam/how-to/enforce-security-requirements-members/#how-to-enforce-password-renewal)
100
102
-[How to stop enforcing password renewal](/iam/how-to/enforce-security-requirements-members/#how-to-stop-enforcing-password-renewal)
101
103
-[How to edit the grace period of your Organization](/iam/how-to/enforce-security-requirements-members/#how-to-edit-the-grace-period-of-your-organization)
102
-
-[How to set a maximum number of login attempts](/iam/how-to/enforce-security-requirements-members/#how-to-set-a-maximum-number-of-login-attempts)
Copy file name to clipboardExpand all lines: pages/iam/quickstart.mdx
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -51,7 +51,7 @@ IAM applications are non-human users in an Organization, enabling you to give pr
51
51
52
52
## How to give permissions to users and applications via policies
53
53
54
-
Users you have invited to your Organization, and applications you have created, have no rights or permissions until you attach [policies](/iam/reference-content/policy/) to them, as described below.
54
+
Users you have added to your Organization, and applications you have created, have no rights or permissions until you attach [policies](/iam/reference-content/policy/) to them, as described below.
55
55
1. Click **Identity and Access Management (IAM)** from the top-right of your [**Organization Dashboard**](https://console.scaleway.com/organization) in the Scaleway console. The **Users** tab of the [Identity and Access Management dashboard](https://console.scaleway.com/iam/users) displays.
56
56
2. Click the **Policies** tab. A list of the Organization's existing policies displays.
57
57
3. Click **Create policy**. The creation wizard displays.
0 commit comments