You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: pages/account/how-to/use-2fa.mdx
+4-2Lines changed: 4 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -32,8 +32,10 @@ Download the app of your choice and install it onto your smartphone.
32
32
33
33
## How to enable MFA
34
34
35
-
1. Access the [Security](https://console.scaleway.com/account/security) tab of your **User Account** page.
36
-
Alternatively, click your Organization name on the top-right corner of the console navigation menu, click **Profile**, then **Security**.
35
+
1. Click your Organization name on the top-right corner of the console navigation menu, click **Profile**, then **Security**.
36
+
<Messagetype="important">
37
+
If you are logged in as an [IAM member](/iam/concepts/#member), Click **Profile**, then **Credentials** and scroll down to the **Multifactor authentication** section.
38
+
</Message>
37
39
2. Click **Enable MFA**, in the **Multifactor authentication** section. A pop-up displays.
38
40
3. Enter the code shown on the pop-up into your MFA app, or scan the QR code into your app.
39
41
Your app sets up MFA for your Scaleway account and displays a 6-digit code.
Copy file name to clipboardExpand all lines: pages/iam/how-to/comply-with-sec-requirements-member.mdx
+16-12Lines changed: 16 additions & 12 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -17,15 +17,15 @@ Upon your [first login as a Member](/iam/how-to/log-in-as-a-member), you must co
17
17
18
18
## How to check the security requirements
19
19
20
-
When you log in for the first time, a security checklist displays in your Scaleway console.
21
-
22
-
<Lightboxsrc="scaleway-iam-member-sec-req.webp"alt="screenshot of the scaleway console showing a checklist of the few quick steps to follow until you can explore the Scaleway console. 1. Update password - You are required to update your password to stay connected to this Organization. A message box indicated that there is 1 day left to update the password. It warns that once this grace period is up, you will be locked out of the Organization until an administrator unlocks your account. A button prompts to update the password. "/>
23
-
24
-
Currently, the mandatory security requirements include:
20
+
You Organization administrators may require you to perform two different security actions:
25
21
26
22
-[Updating your password](#how-to-update-a-password)
27
23
-[Setting up MFA](#how-to-set-up-mfa-as-a-member)
28
24
25
+
If one of these requirements is enforced in your Organization, a security checklist will display in your Scaleway console when you log in for the first time,
26
+
27
+
<Lightboxsrc="scaleway-iam-member-sec-req.webp"alt="screenshot of the scaleway console showing a checklist of the few quick steps to follow until you can explore the Scaleway console. 1. Update password - You are required to update your password to stay connected to this Organization. A message box indicated that there is 1 day left to update the password. It warns that once this grace period is up, you will be locked out of the Organization until an administrator unlocks your account. A button prompts to update the password. "/>
28
+
29
29
### Grace period
30
30
31
31
New IAM Members have a [grace period](/iam/concepts/#grace-period) available to comply with security requirements. The grace period is defined by the Organization's administrator or is set to default (7 days).
@@ -46,7 +46,11 @@ This means that if you fail to login five times, you will be blocked from your O
46
46
47
47
Passwords are not required for a first Member login.
48
48
49
-
However, even if your Organization administrator provides you with a password or you log in using a code, you must update your password after your first login.
49
+
However, if password renewal is enforced in your Organization, you must update your password after your first login.
50
+
51
+
<Messagetype="note">
52
+
Your Organization's administrator may provide you with a password for your first login. If password renewal is enforced in your Organization, you still need to update your password.
53
+
</Message>
50
54
51
55
1. Click **Update password** in your security requirements **Checklist** in the Scaleway console. A pop-up appears.
52
56
<Messagetype="note">
@@ -55,15 +59,15 @@ However, even if your Organization administrator provides you with a password or
55
59
2. Define a new password in the box.
56
60
3. (Optional) Check the box if you want to send the password to your email.
57
61
<Messagetype="tip">
58
-
Make sure you copy and securely store the password, as it will only be shown once. If you lose access to your password, you must renew it.
62
+
Make sure you copy and securely store the password, as it will only be shown once. If you lose access to your password, you must renew it again. Refer to the [How to manage members](/iam/how-to/manage-members#how-to-edit-a-members-information) documentation to learn how to renew your password after first renewal.
59
63
</Message>
60
64
61
65
If all security requirements are met, you will be redirected to the Organization dashboard. If not, follow the steps of the [next section](#how-to-set-up-mfa-as-a-member) to complete the checklist.
62
66
63
67
## How to set up MFA as a Member
64
68
65
-
66
-
67
-
68
-
69
-
69
+
1. Click **Identity and Access Management (IAM)** from the top-right of your [Organization Dashboard](https://console.scaleway.com/organization) in the Scaleway console. The **Users** tab of the [Identity and Access Management dashboard](https://console.scaleway.com/iam/users) displays.
70
+
2. Click your username. Alternatively, click <Iconname="more" /> next to the user, and select **Overview**. Either way, you are taken to the user's **Overview** tab.
71
+
3. Go to the **Credentials** tab.
72
+
4. Scroll down to the **Multifactor authentication** section.
73
+
5. Follow the steps indicated in the [How to use MFA](/account/how-to/use-2fa) documentation page.
Copy file name to clipboardExpand all lines: pages/iam/how-to/manage-members.mdx
+8-4Lines changed: 8 additions & 4 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -55,7 +55,7 @@ The Member is locked and their name is displayed in red and their status is mark
55
55
If a Member is locked you can unlock them anytime as an Owner or user with IAM Manager permissions. Their name is displayed in red and their status is marked as `Locked` in the IAM users list.
56
56
57
57
<Messagetype="important">
58
-
If a Member fails to [comply with security requirements](/iam/how-to/log-in-as-a-member#how-to-comply-with-security-requirements) by the end of the [grace period](/organizations-and-projects/concepts), they are automatically locked and are not able to connect to the Organization until they are manually unlocked.
58
+
If a Member fails to [comply with security requirements](/iam/how-to/log-in-as-a-member#how-to-comply-with-security-requirements) by the end of the [grace period](/iam/concepts#grace-period), they are automatically locked and are not able to connect to the Organization until they are manually unlocked.
59
59
</Message>
60
60
61
61
1. Click **Identity and Access Management (IAM)** on the top-right corner of your [Organization Dashboard](https://console.scaleway.com/organization) in the Scaleway console. The **Users** tab of the [Identity and Access Management dashboard](https://console.scaleway.com/iam/users) displays.
@@ -73,6 +73,10 @@ The Member is unlocked.
73
73
74
74
You can edit a Member's username, email address, and password.
75
75
76
+
<Messagetype="note">
77
+
Follow the procedure below to edit your own Member information.
78
+
</Message>
79
+
76
80
1. Click **Identity and Access Management (IAM)** on the top-right corner of your [Organization Dashboard](https://console.scaleway.com/organization) in the Scaleway console. The **Users** tab of the [Identity and Access Management dashboard](https://console.scaleway.com/iam/users) displays.
77
81
2. Click the name of the Member you want to delete. Alternatively, click <Iconname="more" /> next to the Member, and select **Overview**. Either way, you are taken to the user's **Overview** tab.
78
82
3. Click the **Credentials** tab.
@@ -89,18 +93,19 @@ The updated information appears in the credentials tab.
89
93
90
94
For the increased security of your Organization, you can enforce different security measures for your IAM Members.
91
95
92
-
Refer to the dedicated [How to enforce security Members for Members](/iam/how-to/enforce-security-requirements-members/) documentation page to find how to:
96
+
Refer to the dedicated [How to enforce security for Members](/iam/how-to/enforce-security-requirements-members/) documentation page to find how to:
93
97
94
98
-[How to disable a Member's MFA](/iam/how-to/enforce-security-requirements-members/#how-to-disable-a-members-mfa)
95
99
-[How to enforce password renewal](/iam/how-to/enforce-security-requirements-members/#how-to-enforce-password-renewal)
96
100
-[How to stop enforcing password renewal](/iam/how-to/enforce-security-requirements-members/#how-to-stop-enforcing-password-renewal)
97
101
-[How to edit the grace period of your Organization](/iam/how-to/enforce-security-requirements-members/#how-to-edit-the-grace-period-of-your-organization)
98
102
-[How to set a maximum number of login attempts](/iam/how-to/enforce-security-requirements-members/#how-to-set-a-maximum-number-of-login-attempts)
99
103
104
+
100
105
## How to delete a Member
101
106
102
107
<Messagetype="important">
103
-
A Member can delete their own account. The procedure is the same as described below.
108
+
A Member can delete their own account. The procedure is the same as described below. When a Member deletes themselves, they are automatically disconnected from the Scaleway console.
104
109
</Message>
105
110
106
111
1. Click **Identity and Access Management (IAM)** on the top-right corner of your [Organization Dashboard](https://console.scaleway.com/organization) in the Scaleway console. The **Users** tab of the [Identity and Access Management dashboard](https://console.scaleway.com/iam/users) displays.
@@ -117,4 +122,3 @@ Refer to the dedicated [How to enforce security Members for Members](/iam/how-to
117
122
118
123
The Member is deleted. If you wish to check the Member's previous logs from this point on, keep in mind that they will appear as "Deleted user" in the IAM logs. The user ID remains visible.
Copy file name to clipboardExpand all lines: pages/iam/quickstart.mdx
+7-13Lines changed: 7 additions & 13 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -26,23 +26,20 @@ Read our dedicated page for a [general overview of IAM](/iam/reference-content/o
26
26
Invite other users to be able to give them access to your Organization. You will be able to define the exact level of access to give by creating a [policy](#how-to-give-permissions-to-users-and-applications-via-policies) for them later.
27
27
28
28
1. Click **Identity and Access Management (IAM)** from the top-right of your [**Organization Dashboard**](https://console.scaleway.com/organization) in the Scaleway console. The **Users** tab of the [Identity and Access Management dashboard](https://console.scaleway.com/iam/users) displays.
3. Enter the email address of the person you want to invite. If you want to invite more than one user, enter multiple email addresses separated by commas. Optionally, you can also select a [group](/iam/concepts/#group) to add the user to.
33
-
4. Click **Invite** to send the invitation.
29
+
2. Click **+ Add user**. A pop-up displays prompting you to choose between creating a **Member** or adding a **Guest**.
30
+
3. Select **Guest** and click **Continue**.
31
+
4. Enter the email address of the person you want to invite. If you want to invite more than one user, enter multiple email addresses separated by commas. Optionally, you can also select a [group](/iam/concepts/#group) to add the user to and add one or more tags.
32
+
5. Click **Invite** to send the invitation.
34
33
The user receives an email inviting them to accept your invitation. If they do not already have a Scaleway account, they will be prompted to [create one](/account/how-to/create-an-account/) first.
35
-
5. The user will appear in the list of your Organization's users once they have accepted the invitation.
34
+
6. The user will appear in the list of your Organization's users once they have accepted the invitation.
36
35
37
36
## How to create an application
38
37
39
38
IAM applications are non-human users in an Organization, enabling you to give programmatic access to resources.
40
39
41
40
1. Click **Identity and Access Management (IAM)** from the top-right of your [**Organization Dashboard**](https://console.scaleway.com/organization) in the Scaleway console. The **Users** tab of the [Identity and Access Management dashboard](https://console.scaleway.com/iam/users) displays.
42
41
2. Click the **Applications** tab. A list of the Organization's existing IAM applications displays.
- Enter a name for the application, or use the auto-generated name suggested for you,
48
45
- Enter a description (optional),
@@ -56,10 +53,8 @@ IAM applications are non-human users in an Organization, enabling you to give pr
56
53
57
54
Users you have invited to your Organization, and applications you have created, have no rights or permissions until you attach [policies](/iam/reference-content/policy/) to them, as described below.
58
55
1. Click **Identity and Access Management (IAM)** from the top-right of your [**Organization Dashboard**](https://console.scaleway.com/organization) in the Scaleway console. The **Users** tab of the [Identity and Access Management dashboard](https://console.scaleway.com/iam/users) displays.
59
-
2. Click the **Policies** tab. A list of the Organization's existing policies displays:
2. Click the **Policies** tab. A list of the Organization's existing policies displays.
57
+
3. Click **Create policy**. The creation wizard displays.
63
58
4. Complete the steps on the first page of the creation wizard:
64
59
- Enter a **name** for the policy,
65
60
- Enter a **description** (optional),
@@ -68,7 +63,6 @@ Users you have invited to your Organization, and applications you have created,
68
63
You can choose to create a policy without a principal for now, and attach the principal later. Be aware that the policy will have no effect until a principal is attached. A policy can only be attached to one principal at a time.
69
64
</Message>
70
65
5. Click **Add rules** to progress to the next part of the policy creation wizard.
Rules define the actions that the attached principal will be able to carry out within the Organization. When creating a rule, you first set the **scope** of the rule, and then select the **permission sets** to apply within the scope. See our dedicated documentation for more help with [policies, rules, scopes and permission sets](/iam/reference-content/policy/).
0 commit comments