Terraform improves permissions management for teams
HCP Terraform and Terraform Enterprise enhance permissions management capabilities to eliminate the bottleneck of relying solely on the owner for managing teams.
We are excited to announce the release of a new enhancement to HashiCorp Terraform’s permissions management capabilities: granular permissions to manage teams. Now available in HCP Terraform and coming soon to Terraform Enterprise, this addition improves how users can configure permissions for specific teams at the organization level.
» Permission management challenges
Previously in HCP Terraform and Terraform Enterprise, the process of creating, deleting, and overseeing team members within organizations could be cumbersome for organization owners, since this functionality was restricted to the owner permission level. Owners needed to review and approve frequent permission requests or elevate other users to the organizational owner level, granting full access to users who potentially should not hold such permissions, which could introduce security risks to the organization.
» Introducing granular permissions to manage teams
The new “manage teams” capability streamlines and secures these efforts by letting organization owners delegate the ability to manage teams at the organizational level. This enhancement alleviates the bottleneck of relying solely on the owner for managing teams, as approved team members can create, read, update, and delete teams without having organizational owner membership.
When adding a new team, you can now check the “Manage teams” checkbox under the Organization Access section of the team’s settings page and configure permissions settings to meet your organizational requirements.
» Getting started
These HCP Terraform and Enterprise improvements represent another step in our continued effort to help users simplify permission management to enable the least privilege principle and mitigate security risks throughout their infrastructure workflows.
This feature is available now in HCP Terraform and coming soon to Terraform Enterprise. For details on getting started, please refer to the permissions documentation.
If you are new to Terraform, you can get started with HCP Terraform for free to begin provisioning and managing your infrastructure in any environment. And don’t forget to link your HCP Terraform and HashiCorp Cloud Platform (HCP) accounts together for a seamless sign-in experience.
Sign up for the latest HashiCorp news
More blog posts like this one
HashiCorp at re:Invent 2024: Infrastructure Lifecycle Management with AWS
A recap of HashiCorp infrastructure news and developments on AWS from the past year, from a new provider launch to simplifying infrastructure provisioning and more.
Simplify policy adoption in Terraform with pre-written Sentinel policies for AWS
HashiCorp introduces a new pre-written policy library co-developed with AWS, aiming to reduce the barrier of adoption for policy as code infrastructure workflows.
Terraform 1.10 improves handling secrets in state with ephemeral values
Terraform 1.10 is generally available, and it includes ephemeral values along with improvements to plan and apply performances.