feat: updated doc and fixed overflow in model for access policy
@@ -6,21 +6,29 @@ description: "Learn how to request access to sensitive resources in Infisical."
|
|||||||
In certain situations, developers need to expand their access to a certain new project or a sensitive environment. For those use cases, it is helpful to utilize Infisical's **Access Requests** functionality.
|
In certain situations, developers need to expand their access to a certain new project or a sensitive environment. For those use cases, it is helpful to utilize Infisical's **Access Requests** functionality.
|
||||||
|
|
||||||
This functionality works in the following way:
|
This functionality works in the following way:
|
||||||
|
|
||||||
1. A project administrator sets up an access policy that assigns access managers (also known as eligible approvers) to a certain sensitive folder or environment.
|
1. A project administrator sets up an access policy that assigns access managers (also known as eligible approvers) to a certain sensitive folder or environment.
|
||||||

|

|
||||||

|
|
||||||
|
<Note>
|
||||||
|
A step policy enables a sequential approval workflow in which approvals
|
||||||
|
must follow the designated chain.
|
||||||
|
</Note>
|
||||||
|

|
||||||
|
|
||||||
2. When a developer requests access to one of such sensitive resources, the request is visible in the dashboard, and the corresponding eligible approvers get an email notification about it.
|
2. When a developer requests access to one of such sensitive resources, the request is visible in the dashboard, and the corresponding eligible approvers get an email notification about it.
|
||||||

|

|
||||||

|

|
||||||
|
|
||||||
4. An eligible approver can approve or reject the access request.
|
3. An eligible approver can approve or reject the access request.
|
||||||
{/*  */}
|
{/*  */}
|
||||||

|

|
||||||
|
|
||||||
<Info>
|
<Info>
|
||||||
If the access request matches with a policy that allows break-glass approval bypasses, the requester may bypass the policy and get access to the resource without full approval.
|
If the access request matches with a policy that allows break-glass approval
|
||||||
|
bypasses, the requester may bypass the policy and get access to the resource
|
||||||
|
without full approval.
|
||||||
</Info>
|
</Info>
|
||||||
|
|
||||||
5. As soon as the request is approved, developer is able to access the sought resources.
|
5. As soon as the request is approved, developer is able to access the sought resources.
|
||||||

|
|
||||||
|
|||||||
|
Before Width: | Height: | Size: 47 KiB After Width: | Height: | Size: 474 KiB |
|
Before Width: | Height: | Size: 56 KiB After Width: | Height: | Size: 434 KiB |
|
Before Width: | Height: | Size: 132 KiB After Width: | Height: | Size: 468 KiB |
|
Before Width: | Height: | Size: 43 KiB After Width: | Height: | Size: 536 KiB |
|
Before Width: | Height: | Size: 96 KiB After Width: | Height: | Size: 479 KiB |
@@ -397,7 +397,6 @@ export const AccessPolicyForm = ({
|
|||||||
<Modal isOpen={isOpen} onOpenChange={onToggle}>
|
<Modal isOpen={isOpen} onOpenChange={onToggle}>
|
||||||
<ModalContent
|
<ModalContent
|
||||||
className="max-w-3xl"
|
className="max-w-3xl"
|
||||||
bodyClassName="overflow-visible"
|
|
||||||
ref={modalContainer}
|
ref={modalContainer}
|
||||||
title={isEditMode ? `Edit ${policyName}` : "Create Policy"}
|
title={isEditMode ? `Edit ${policyName}` : "Create Policy"}
|
||||||
>
|
>
|
||||||
|
|||||||