Rapid7 Platform Login
Overview
You can access Cloud Security (InsightCloudSec) features using the Rapid7 Command Platform. This provides you with the the opportunity to unify your access to Rapid7 tools in a single interface. You can still use your domain-based login to access Cloud Security (InsightCloudSec).
Support Items to Note
SaaS-Only
Platform login is only available to Cloud Security (InsightCloudSec) SaaS (hosted) customers.
Just In-Time (JIT) Support
While Cloud Security (InsightCloudSec) does support Command Platform logins using Just In-Time (JIT) User Provisioning, you will need to request that this capability be enabled as it is disabled by default. Reach out to your CSA or support to request that this be enabled.
Prerequisites
Email Requirements
- If an email address is in use by more than one user, you will not be able to log in.
- Email addresses within Cloud Security (InsightCloudSec) must be unique for a Platform login.
JIT User Provisioning
- Users logging in via the Platform must have an assigned Cloud Security (InsightCloudSec) role to login.
- When JIT is implemented it will provision the user and assign it a role.
- If the user’s role has changed on Cloud Security (InsightCloudSec) or Platform those changes will not be reflected.
- Changes to roles (role synchronization) will be implemented in a future update.
Getting Started - For Admins
A designated administrator is required to manage your Command Platform login. After receiving credentials you will need to log in to the Command Platform and establish access for the users for which you want to enable a login.
Platform Administrators and Cloud Security (InsightCloudSec) Administrators
Command Platform Administrators and Cloud Security (InsightCloudSec) Administrators are entirely independent of one another. If you need administrative rights to the Command Platform, reach out to us through your CSA or through the Customer Support Portal.
Understanding Roles
Before creating users and assigning roles it’s important to understand the differences between Command Platform roles and Cloud Security (InsightCloudSec) roles. Role mapping between the Command Platform and Cloud Security (InsightCloudSec) is as follows:
| Command Platform Role | Cloud Security (InsightCloudSec) Role |
|---|---|
| Domain Admin | Cloud Security (InsightCloudSec) Domain Admin |
| Domain Admin w/ Read-Only Checkbox | Cloud Security (InsightCloudSec) Domain Viewer |
| Organization Admin | Cloud Security (InsightCloudSec) Organization Admin |
| Basic User | Cloud Security (InsightCloudSec) Basic User |
- For details on managing users within the Command Platform check out Manage Insight User Access .
- For details on Users/Roles within Cloud Security (InsightCloudSec) refer to Users, Groups, and Roles (User Management) and also our User Entitlements Matrix.
Adding Users
Bulk Add/Import
Bulk import or adding multiple users is available if you have SSO enabled on the Command Platform. Refer to the documentation for single sign-on for additional details.
Adding Cloud Security (InsightCloudSec) to an Existing User
Refer to the steps below to add Cloud Security (InsightCloudSec) as a tool to an existing Platform user:
- Log in to the Command Platform and go to Administration > Users.
- Select the target user.
- Under Individual Privileges, click Manage Individual Privileges.
- Select Cloud Security (InsightCloudSec) and then select a role.
- Click Save Individual Privileges to apply these changes to the user.
Getting Started - For Users
Users who have been provided with access to Cloud Security (InsightCloudSec) through the Platform will receive an email notification for their account creation.
Users will need their email address to login, not their Cloud Security (InsightCloudSec) username. In some scenarios these may be the same depending on how your previous access was configured.
After logging in to the Rapid7 Command Platform (Insight Platform), select Open on the Cloud Security (InsightCloudSec) tile to access your Cloud Security (InsightCloudSec) Platform. If you do not see a tile, reach out to your Platform Administrator.
This tile/button will navigate to a new URL, however the direct URL you’ve used previously to access your Cloud Security (InsightCloudSec) installation is also still available.
For details on managing your profile within the Platform refer to the Profile Settings Documentation .
Other Considerations for Users
Once you have confirmed access to Cloud Security (InsightCloudSec) we recommend validating that the email you are using is the same in your Cloud Security (InsightCloudSec) profile.
To view your email address do the following:
- From the top menu, click your username then click My Profile.