The Calico Enterprise web console
Configure access to the web console
Expose the Calico Enterprise web console outside the cluster through ingress, a load balancer service, or port forwarding for administrator access.
Authentication quickstart
Sign in to the Calico Enterprise web console and Kibana with default service-account token authentication for a quick first-time setup.
Configure an external identity provider
Connect an external identity provider to Calico Enterprise so users authenticate against an existing IdP when signing in to the web console and Kibana.
Configure user roles and permissions
Configure Kubernetes RBAC roles and bindings to scope user access to Calico Enterprise features, tiered policies, observability views, and management plane APIs.