Project

General

Profile

Actions

Documentation #45377

closed

mgr/dashboard: document Prometheus' security model

Added by Patrick Seidensal about 4 years ago. Updated about 3 years ago.

Status:
Resolved
Priority:
Normal
Category:
Docs
Target version:
% Done:

0%

Tags:
monitoring
Backport:
octopus nautilus
Reviewed:
Affected Versions:
Pull request ID:

Description

As Prometheus' security model may not be obvious, we should document how Prometheus, by default, sees it and provide references to this perception.

For example, access to the Prometheus HTTP API cannot be password protected by configuring Prometheus and is, by default, considered to be accessible by untrusted users.

It is presumed that untrusted users have access to the Prometheus HTTP endpoint and logs.
-- https://prometheus.io/docs/operating/security/


Related issues 2 (0 open2 closed)

Copied to Dashboard - Backport #47227: octopus: mgr/dashboard: document Prometheus' security modelResolvedActions
Copied to Dashboard - Backport #47228: nautilus: mgr/dashboard: document Prometheus' security modelResolvedActions
Actions

Also available in: Atom PDF