How to request access using Apono for developers with MS Teams
Apono is a platform for Just-in-Time access management that keeps organizations secure and compliant.
Apono makes it easier for DevOps, DevSecOps, IT and IAM Ops to manage access, reduces risk of human error and attack and eliminates the need for clunky IT service management systems in your everyday work.
If your organization is using Apono, access to cloud resources in development, CI/CD, data repositories, cloud infrastructure and more is managed centrally:
Admins in the organization set Access Flows which determine who can access what, with how permissions and for how long.
Developers that need access use Slack, Teams or CLI to request access (see guides below)
Access is automatically approved OR
Members of the organization that are set as the approvers must approve the request with Slack or Teams.
How to use it:
To request access with Slack:
If your admin installed the Apono Teams app from the Apono Catalog, you should see it in your Teams apps menu:
Click New Request
Use the form:
Option 1: Ask for individual access
Pick the integration you need to access
Select the Resource Type (or cloud service)
Select the specific instances you need
Select the permission(s) you need
Option 2: Ask for bundles of access
Pick the bundle that represents your access needs
View the resources and permissions it contains
Pick the ones you want, or pick all
Add a Justification *This is either required by your admin, or optional.
Hit Submit
That's it! Follow the Teams requests page for the status of your requests.
For Expired access, you may also click "Request Again" to regain the same permission(s) to the same resource(s):
If your access is approved and granted, you'll get a Teams message from Apono and the access request will appear as Granted in your Requests screen.
Click "View Details" in the bottom right corner of the request.
A pop-up will open. Use the access details to log into the app or resource you need:
Make sure you copy the details, as they only appear once
Follow the steps; they vary for each application or resource
After the 1st view, you will be required to Reset Credentials
Pending: waiting for the approver(s) to approve or reject
Granting: the request is approved and Apono is provisioning the access
Granted: you have successfully been given access. Check the Access Details to learn about logging in.
Expired: Your access time is up and access is revoked.
Rejected: the request was automatically rejected or rejected by approvers
Failed: An error has occurred. Contact your admin.
Use the Apono Teams app to approve or reject requests
The Apono Teams app enables you to reject or approve a request to access services, databases, and applications that are centrally managed through Apono.
Follow these steps to reject a request:
In Teams, click Apono.
Review the request message.
Each request appears as a separate message and contains the following information:
An explanation why you are the approver of the request
The request ID
The PENDING status
The user who made the request (Requested by)
The Resources the user wants to access
The Permissions the user is requesting
The Duration of the access
The justification for requesting access
Click Reject. The Please provide a reason for rejection popup window appears.
Enter a Reason. The rejection reason must be less than 124 characters.
If the Require Approve Reason setting has been enabled for the access flow, you will be required to enter a reason.
Click Reject Request. The requester will receive a notification in Teams that includes the rejection reason.
Follow these steps to approve a request:
In Teams, click Apono.
Review the request message.
Each request appears as a separate message and contains the following information:
An explanation why you are the approver of the request
The request ID
The PENDING status
The user who made the request (Requested by)
The Resources the user wants to access
The Permissions the user is requesting
The Duration of the access
The justification for requesting access
Click Approve. The Please provide a reason for approval popup window appears.
Enter a Reason. The approval reason must be less than 124 characters.
If the Require Approve Reason setting has been enabled for the access flow, you will be required to enter a reason.
Click Submit. The requester will receive a notification in Teams.