{"id":1336,"date":"2024-10-15T18:16:00","date_gmt":"2024-10-15T18:16:00","guid":{"rendered":"https:\/\/rssfeedtelegrambot.bnaya.co.il\/index.php\/2024\/10\/15\/introducing-organization-access-tokens\/"},"modified":"2024-10-15T18:16:00","modified_gmt":"2024-10-15T18:16:00","slug":"introducing-organization-access-tokens","status":"publish","type":"post","link":"https:\/\/rssfeedtelegrambot.bnaya.co.il\/index.php\/2024\/10\/15\/introducing-organization-access-tokens\/","title":{"rendered":"Introducing Organization Access Tokens"},"content":{"rendered":"<p>In the past, securely managing access to organization resources has been difficult. The only way to gain access has been through an assigned user\u2019s personal access tokens. Whether these users are your engineer\u2019s accounts, bot accounts, or service accounts, they often become points of risk for your organization.<\/p>\n<p>Now, we\u2019re pleased to introduce a long-awaited feature: <a href=\"https:\/\/docs.docker.com\/security\/for-admins\/access-tokens\/\" target=\"_blank\" rel=\"noopener\">organization access tokens<\/a>.<\/p>\n<p>Organization access tokens are like personal access tokens, but at an organizational level with many improvements and features. In this post, we walk through a few reasons why this feature release is so exciting.<\/p>\n<h2 class=\"wp-block-heading\">Frictionless management<\/h2>\n<p>Every day, we are reducing the friction for organizations and engineers using our products. We want you working on your projects, not managing your development tools.\u00a0<\/p>\n<p>Organization access tokens do not require you to manage groups and repository assignments like users require. This means you benefit from a straightforward way to manage access that each access token has instead of managing users and their placement within the organization.<\/p>\n<p>If your organization has SSO enabled and enforced, you have likely run into the issue where machine or service accounts cannot log in easily because they don\u2019t have the ability to log into your identity provider. With organization access tokens, this is no longer a problem.<\/p>\n<p>Did someone leave your organization? No problem! With organization access tokens, you are still in control of the token instead of having to track down which tokens were on that user\u2019s account and deal with the resulting challenges.<\/p>\n<h2 class=\"wp-block-heading\">Fine-grained access<\/h2>\n<p>Organization access tokens introduce a new way to allow for tokens to access resources within your organization. These tokens can be assigned to specific repositories with specific actions for full access management with \u201cleast privilege\u201d applied. Of course, you can also allow access to all resources in your organization.<\/p>\n<h2 class=\"wp-block-heading\">Expirations<\/h2>\n<p>Another critical feature is the ability to set expirations for your organization access tokens. This is great for customers who have compliance requirements for token rotation or for those who just like the extra security.<\/p>\n<h2 class=\"wp-block-heading\">Visibility<\/h2>\n<p>Management and registry actions all show up in your organization\u2019s activity logs for each access token. Each token\u2019s usage also shows up on your organization\u2019s usage reports.<\/p>\n<h2 class=\"wp-block-heading\">Business use cases and fair use<\/h2>\n<p>We believe that organization access tokens are useful in the context of teams and companies, which is why we are making them available to Docker Team and Docker Business subscribers. With the usual attention to the security aspect, avoiding any \u201cmisuse\u201d related to the proliferation of the number of access tokens created, we are introducing a limitation in the maximum number of organization access tokens based on the type of subscription. There will be a limit of 10 for Team plans and 100 for Business plans.<\/p>\n<h2 class=\"wp-block-heading\">Try organization access tokens<\/h2>\n<p>If you are on a team or business subscription, <a href=\"https:\/\/docs.docker.com\/security\/for-admins\/access-tokens\/\" target=\"_blank\" rel=\"noopener\">check out our documentation<\/a> to learn more about using organization access tokens.<\/p>\n<h3 class=\"wp-block-heading\">Learn more<\/h3>\n<p>Read the <a href=\"https:\/\/docs.docker.com\/security\/for-admins\/access-tokens\/\" target=\"_blank\" rel=\"noopener\">organization access tokens documentation<\/a>.<\/p>\n<p>Learn about <a href=\"https:\/\/www.docker.com\/pricing\/\" target=\"_blank\" rel=\"noopener\">Docker subscription plans<\/a>.<\/p>\n<p>Subscribe to the <a href=\"https:\/\/www.docker.com\/newsletter-subscription\/\" target=\"_blank\" rel=\"noopener\">Docker Newsletter<\/a>.<\/p>\n<p><a href=\"https:\/\/www.docker.com\/pricing\/\" target=\"_blank\" rel=\"noopener\">Authenticate and update<\/a> to receive your subscription level\u2019s newest Docker features.<\/p>\n<p>New to Docker? <a href=\"https:\/\/hub.docker.com\/signup?_gl=1*452i3u*_ga*MjEzNzc3Njk5MC4xNjgzNjY3NDkw*_ga_XJWPQMJYHQ*MTcwODcxNjA4Ni4zNjguMS4xNzA4NzE2MzE2LjUzLjAuMA..\" target=\"_blank\" rel=\"noopener\">Create an account<\/a>.<\/p>","protected":false},"excerpt":{"rendered":"<p>In the past, securely managing access to organization resources has been difficult. The only way to gain access has been [&hellip;]<\/p>\n","protected":false},"author":0,"featured_media":0,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[4],"tags":[],"class_list":["post-1336","post","type-post","status-publish","format-standard","hentry","category-docker"],"_links":{"self":[{"href":"https:\/\/rssfeedtelegrambot.bnaya.co.il\/index.php\/wp-json\/wp\/v2\/posts\/1336","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/rssfeedtelegrambot.bnaya.co.il\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/rssfeedtelegrambot.bnaya.co.il\/index.php\/wp-json\/wp\/v2\/types\/post"}],"replies":[{"embeddable":true,"href":"https:\/\/rssfeedtelegrambot.bnaya.co.il\/index.php\/wp-json\/wp\/v2\/comments?post=1336"}],"version-history":[{"count":0,"href":"https:\/\/rssfeedtelegrambot.bnaya.co.il\/index.php\/wp-json\/wp\/v2\/posts\/1336\/revisions"}],"wp:attachment":[{"href":"https:\/\/rssfeedtelegrambot.bnaya.co.il\/index.php\/wp-json\/wp\/v2\/media?parent=1336"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/rssfeedtelegrambot.bnaya.co.il\/index.php\/wp-json\/wp\/v2\/categories?post=1336"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/rssfeedtelegrambot.bnaya.co.il\/index.php\/wp-json\/wp\/v2\/tags?post=1336"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}