Organization Settings 🗂️

Overview

The Organization Settings section enables Administrators to manage users, permissions, account settings, integrations, and other account-wide configurations. 
Access the Organization Settings by clicking the Settings icon next to the user avatar in the top navigation bar.

Access Management

The Access Management section includes all role-based access control (RBAC) tools for managing users and permissions across your organization. Here are the key pages:

Users

Manage user accounts, including adding, editing, and disabling users. RBAC functionality allows you to define actions and assign roles for each user to control access effectively.

The Users page will be available only for users with the correct permission “manage:users”. 

For each user, the following data will appear in the table:

  • Name
  • Email
  • Roles
  • Temporary roles
  • Status

The following capabilities are available:

  • Search for user
  • Add single user
  • Bulk add users

For each user, you will be able to:

  • Edit user
  • Delete user
  • View their effective permissions

Actions

Manage actions allowed by each role, setting boundaries on what each role or user can do within the platform.

The Actions page will be available only for users with correct permissions “manage:users” & "manage:kubeconfig". 

For each Action the following data will appear on the table:

  • Name
  • Type
  • Description
  • Modified At

The following capabilities are available:

  • Search for Action
  • Filter by Action type
  • Add Action

For each Action you will be able to:

  • Edit action
  • Delete action

Roles

Define custom roles, specifying permissions at a granular level for each role.

The Roles page will be available only for users with proper permission “manage:users”. 

For each Role, the following data will appear in the table:

  • Name
  • Attached policies
  • ID

The following capabilities are available:

  • Search for role
  • Add role

And for each role you will be able to:

  • Edit role
  • Delete role

Policies

Set policies to ensure compliance with your organization’s security and governance standards, managing permissions and resource access.

The Policies page will be available only for users with proper permission “manage:users” & “manage:kubeconfig”

For each policy the following data will appear on the table:

  • Name
  • Type
  • Tags
  • ID

The following capabilities are available:

  • Search for policy
  • Add policy

And for each policy you will be able to:

  • Edit policy
  • Delete policy

IP CIDR Whitelist

Some organizations restrict infrastructure access to specific IP address ranges to enhance security and prevent unauthorized access. Komodor's CIDR Whitelist feature further empowers account-admins to have greater granularity as to access control.

For detailed information on configuring IP ranges using CIDR notation, please refer to our CIDR Configuration Guide.

Account Management

The Account section provides account-wide settings for usage tracking, audit logs, and agent information:

Usage page

Track account usage and monitor monthly nodes count over time.

new usage page.png

Audit page

Access detailed audit logs to review account activity, providing insight into user actions, configuration changes, and more.

Agents page

The Agents Page allows users with the “view:agents” permission to view agent-related information, such as API keys and setup details.

For each Agent, the following data will appear in the table:

  • Status indication (active/inactive)
  • Cluster name
  • Agent version
  • Agent ID
  • Chart version
  • API key 

Additional hidden columns you can easily add by clicking on “columns”:

  • Created at
  • Last heartbeat received 
  • K8s version

The following capabilities are available:

  • Filter by cluster
  • Filter by API key
  • Show inactive agents toggle
  • Add cluster
  • Restart Agent
  • Copy API Key
  • Delete API Key

Please note: the deltetion of the API Key will remove the installation from all the relevant clusters

Configurations

The Configurations section provides centralized access to integrations, monitors, and feature controls.

Integrations page

Manage and configure integrations with external tools. Available integrations include GitHub, GitLab, Clack, and Custom Events and more.

You can easily search integration, filter by status or uninstall it.

For detailed information on each integration, please refer to our Integrations Guides.

Monitors page

Komodor provides rich out-of-the-box monitoring capabilities, capturing a wide variety of issues from day one. Komodor allows you, from the moment you onboard your cluster, to monitor significant events in your cluster that will allow you to review occurrences of certain events and issues. 

Configure your monitors definition through this page.

For detailed information on Monitors, please refer to our Monitors Guide.

Features page

View and manage platform feature settings, tailoring functionality based on your organization’s needs.

Klaudia AI

Klaudia is Komodor's advanced GenAI agent designed to revolutionize Kubernetes troubleshooting. By leveraging artificial intelligence, Klaudia simplifies and accelerates root-cause analysis in Kubernetes environments. 

Enable Klaudia within your account by toggling it on.

For detailed information on Klaudia, please refer to our Klaudia Guide

RBAC cluster sync

Some users prefer interacting with their clusters using the terminal and CLI tools, but managing Kubernetes RBAC for multiple clusters can be a tedious task for administrators.

The new RBAC Cluster Sync feature by Komodor simplifies this process, allowing cluster administrators to set permissions for multiple resources across multiple clusters from a single, easy-to-use interface, affecting both the Komodor UI and CLI interfaces for their users.

Enable RBAC cluster sync within your account by toggling it on.

For detailed information on this feature, please refer to our RBAC cluster sync guide

 

 

Was this article helpful?

0 out of 0 found this helpful

Comments

0 comments

Please sign in to leave a comment.