Selected reads

Teleport · Learning path

How does Teleport replace infrastructure credentials?

A path through Teleport’s certificate authorities, identity-aware proxy, short-lived certificates, resource services, audit path, and time-bound access requests.

Engineers who need to defend identity-based infrastructure access and explain the trust path from login to an SSH, Kubernetes, database, or application session.

2
stages
2
selected readings
  1. 01

    Stage 1

    Trace identity through the cluster

    Explain the Auth Service, Proxy Service, resource services, certificate authorities, short-lived credentials, reverse tunnels, and audit events.

    DocumentationTeleport documentation

    Teleport architecture

    The authoritative component and trust model, including how clients authenticate and how the proxy reaches registered infrastructure without distributing static credentials.

  2. 02

    Stage 2

    Add time-bound privileged access

    Explain how access requests grant temporary roles, how reviewers participate, and how plugins or policy can shape approval.

    DocumentationTeleport documentation

    Access requests

    Covers the time-bound elevation path that turns standing administrative access into requested, reviewed, expiring access.