Administration
Pulumi ESC is built on Pulumi Cloud and is administered through the same organization as the rest of Pulumi. Organizations, teams and role-based access control, access tokens, SAML SSO, SCIM, OIDC issuers, and self-hosting are all documented under Administration and apply to environments exactly as they do to stacks; the permissions that govern environment access are catalogued in Environment scopes. Self-hosted Pulumi Cloud deployments include ESC.
The pages below cover what is specific to ESC:
- Audit logs: How environment activity is recorded in your organization’s audit log.
- Deletion protection: Prevent accidental deletion of environments holding critical configuration.
- Customer managed keys: Bring your own encryption keys to protect the secrets ESC stores.