{"token_count": 2758}

# The Teleport Infrastructure Identity Platform

## Get started

### [Step 1: Deploy a Teleport cluster](https://goteleport.com/docs/get-started.md)

Select an edition and deploy a Teleport cluster.

### [Step 2: Connect your infrastructure](https://goteleport.com/docs/get-started/connect.md)

Connect and protect your infrastructure with your Teleport cluster.

### [Step 3: Manage access](https://goteleport.com/docs/get-started/access.md)

Configure role-based access controls for your team.

### [Step 4: Review a detailed audit log](https://goteleport.com/docs/get-started/audit.md)

Collect detailed events generated by humans and machines across your infrastructure.

![Get started](https://img.youtube.com/vi/O0YOPpWsn8M/sddefault.jpg)

### [Installation guide](https://goteleport.com/docs/installation.md)

How to install Teleport binaries/clients on your platform.

### [Architecture](https://goteleport.com/docs/reference/architecture.md)

Understand how Teleport components work together.

### [User guides](https://goteleport.com/docs/connect-your-client.md)

Accessing infrastructure with Teleport tools and interfaces.

### [References](https://goteleport.com/docs/reference.md)

Comprehensive guides for configuring Teleport components.

## Teleport Products

Upcoming release

Agentic AI/MCP Security

The Teleport Agentic Identity Framework is a standards-driven security architecture and a reference implementation for deploying AI agents across infrastructure. It provides designs and reference implementations for safe agent adoption across infrastructure with built-in security invariants, observability, and governance.

[Read more](https://goteleport.com/docs/agentic-identity-framework.md)

![Agentic AI/MCP Security](/docs/assets/images/agentic-ai-hero-4490ee36e7102b7acd6236e7abebc365.png)

### [Zero Trust Access](https://goteleport.com/docs/zero-trust-access.md)

Easy access to all your infrastructure on a foundation of cryptographic identity

#### [Enroll and Protect Your Infrastructure](https://goteleport.com/docs/enroll-resources.md)

Apps, servers, databases, Kubernetes clusters, desktops, & more

#### [VNet: Build without VPNs](https://goteleport.com/docs/enroll-resources/application-access/vnet.md)

Secure app & SSH access with no VPNs or proxies

#### [Secure MCP (Protect the Vibes)](https://goteleport.com/docs/connect-your-client/model-context-protocol.md)

Secure MCP integration with granular audit trail

#### [Role-Based Access Control (RBAC)](https://goteleport.com/docs/zero-trust-access/rbac-get-started.md)

Govern infrastructure access with granular permissions

#### [Passwordless Authentication](https://goteleport.com/docs/zero-trust-access/authentication/passwordless.md)

Log in securely using biometrics

#### [Require Managed Devices for Access](https://goteleport.com/docs/zero-trust-access/device-trust.md)

Guarantee access only from trusted devices

#### [Integrate with SSO Providers](https://goteleport.com/docs/zero-trust-access/sso.md)

Connect Okta, Entra ID, Google, and more

#### [Structured Audit Export](https://goteleport.com/docs/zero-trust-access/export-audit-events.md)

Forward audit logs to SIEMs like Splunk and Datadog

#### [Identity-Based Audit Events](https://goteleport.com/docs/reference/deployment/monitoring/audit.md)

Detailed audit logs for every user action

#### [Session Recording and Playback](https://goteleport.com/docs/reference/architecture/session-recording.md)

Record a detailed review of what took place

#### [Session Sharing and Moderation](https://goteleport.com/docs/zero-trust-access/authentication/joining-sessions.md)

Require a moderator for privileged sessions

#### [Manage Clusters with IaC](https://goteleport.com/docs/configuration.md)

Create, update, and manage Teleport in declarative code.

### [Machine and Workload Identity](https://goteleport.com/docs/machine-workload-identity.md)

Replace long-lived secrets with identity-based authentication and authorization

#### [Intro to Machine & Workload ID](https://goteleport.com/docs/machine-workload-identity.md)

Replace long-lived secrets with identity-based auth

#### [Deploy CI/CD Pipelines](https://goteleport.com/docs/machine-workload-identity/deployment.md#cicd)

Replace long-lived secrets in CI/CD pipelines

#### [Secure Infrastructure as Code](https://goteleport.com/docs/configuration/terraform-provider.md)

Manage IaC workflows in Terraform and Pulumi

#### [Hybrid & Multi-Cloud Authentication](https://goteleport.com/docs/machine-workload-identity/use-cases/hybrid-multi-mwi.md)

Universal identities across cloud platforms

#### [Workload to Workload Authentication](https://goteleport.com/docs/machine-workload-identity/use-cases/workload-mwi.md)

Service-to-service auth with mTLS

#### [Identity Management for AI Agents](https://goteleport.com/docs/machine-workload-identity/workload-identity/introduction.md)

RBAC for autonomous agents and processes

### [Identity Governance](https://goteleport.com/docs/identity-governance.md)

Manage on-demand access, privileges, and compliance for all your infrastructure.

#### [Request Temporary Elevated Access](https://goteleport.com/docs/identity-governance/access-requests.md)

Eliminate standing privileges w/ just-in-time access

#### [Manage Standing Access for Teams](https://goteleport.com/docs/identity-governance/integrations/okta/app-and-group-sync.md)

Sync IdP groups to roles w/ automated reviews

#### [Instantly Lock Identities & Sessions](https://goteleport.com/docs/identity-governance/locking.md)

Lock compromised users and resources

#### [Integrate with your Identity Provider(s)](https://goteleport.com/docs/identity-governance/integrations.md)

Okta, Entra ID, and Sailpoint with SCIM group sync

#### [Configure Teleport as an Identity Provider](https://goteleport.com/docs/identity-governance/idps.md)

Use Teleport as a SAML IdP to 3rd-party apps

### [Identity Security](https://goteleport.com/docs/identity-security.md)

Visualize access paths and identify security risks across your infrastructure

#### [Expose Hidden Access Risks](https://goteleport.com/docs/identity-security/integrations/ssh-keys-scan.md)

Scan for SSH keys, repo access, and more

#### [Identify Over-Privileged Users](https://goteleport.com/docs/identity-security/usage/dashboard.md)

Identify users with excessive standing privileges

#### [Monitor Changes to Critical Resources](https://goteleport.com/docs/identity-security/usage/crown-jewels.md)

Monitor, alert on, and visualize access changes

#### [Centralize Visibility Across Systems](https://goteleport.com/docs/identity-security/integrations.md)

Centralize visibility into identities and access across Okta, AWS, GitHub, and more

#### [Query Roles, Groups, & Permissions](https://goteleport.com/docs/identity-security/usage/sql-editor.md)

Create custom tailored queries w/the SQL Editor

## What's new in version 18

[View Changelog](https://goteleport.com/docs/changelog.md)[Upcoming Releases](https://goteleport.com/docs/upcoming-releases.md)

- ![MCP server access](/docs/assets/images/server-mcp-white-bg-2a3decec6a9212c205eb5cf4b8595a1c.png)

  Zero Trust Access

  ### [MCP server access](https://goteleport.com/docs/connect-your-client/model-context-protocol/mcp-access.md)

  Teleport now provides the ability to connect to stdio-based MCP servers with connection proxying and audit logging support.

  Read more

- ![MCP for database access](/docs/assets/images/database-mcp-white-bg-9e7bef7b446c7a443842612e1c861270.png)

  Zero Trust Access

  ### [MCP for database access](https://goteleport.com/docs/connect-your-client/model-context-protocol/database-access.md)

  Teleport now allows MCP clients such as Claude Desktop to execute queries in Teleport-protected databases.

  Read more

## Enroll resources

#### [Applications](https://goteleport.com/docs/enroll-resources/application-access.md)

Protect web apps, TCP apps, and Cloud APIs

#### [Linux Servers](https://goteleport.com/docs/enroll-resources/server-access.md)

Secure Linux servers and OpenSSH servers

#### [Databases](https://goteleport.com/docs/enroll-resources/database-access.md)

AWS, Azure, Google Cloud, cloud DB platforms, & more

#### [Kubernetes Clusters](https://goteleport.com/docs/enroll-resources/kubernetes-access.md)

Kubernetes clusters and the apps running in them

#### [Windows Desktops](https://goteleport.com/docs/enroll-resources/desktop-access.md)

With or without Active Directory

#### [Auto-Discovery of Resources](https://goteleport.com/docs/enroll-resources/auto-discovery.md)

SSH servers, databases, Kubernetes clusters and apps

#### [Cloud Providers](https://goteleport.com/docs/enroll-resources/application-access/cloud-apis.md)

AWS, Azure, and Google Cloud consoles and CLI

#### [MCP and AI Agents](https://goteleport.com/docs/enroll-resources/mcp-access.md)

Secure agentic AI connections to databases & MCP servers

## Integrations

### [AWS](https://goteleport.com/integrations#aws)

### [GCP](https://goteleport.com/integrations#google-cloud-platform-\(gcp\))

### [Azure](https://goteleport.com/integrations#microsoft-azure)

### [Okta](https://goteleport.com/docs/identity-governance/integrations/okta.md)

### [Slack](https://goteleport.com/docs/identity-governance/access-requests/plugins/slack.md)

### [PagerDuty](https://goteleport.com/docs/identity-governance/access-requests/plugins/pagerduty.md)

### [Jamf Pro](https://goteleport.com/docs/zero-trust-access/device-trust/jamf-integration.md)

### [Jenkins](https://goteleport.com/docs/machine-workload-identity/deployment/jenkins.md)

### [Snowflake](https://goteleport.com/docs/enroll-resources/database-access/enrollment/managed/snowflake.md)

### [View all Integrations](https://goteleport.com/integrations)
