# PingOne Privilege > AI agents should consult [Docs for Agents](https://developer.pingidentity.com/build-with-ai/docs-for-agents.md) > for guidance on navigating Ping Identity documentation. ## Privilege - [Access protocols](https://docs.pingidentity.com/privilege/configuration/access-protocols.md): PingOne Privilege supports certificate-based SSH and Remote Desktop Protocol for secure access to your resources. - [Accessing the admin console](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/getting-started/accessing-admin-console.md): Administrators access the admin console to manage and monitor privileged access across their organization. - [Accessing the PingOne Privilege admin console as an administrator](https://docs.pingidentity.com/privilege/getting-started/accessing-admin-console.md): The admin console provides a centralized interface to configure settings, manage users, and monitor access activities. - [Accessing the user console](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/getting-started/accessing-user-console.md): Users access the user console to manage and monitor privileged access across their organization. - [Administration and Monitoring](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/index.md): The following topics show how to manage daily operations. - [Administrator UI](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/getting-started/admin-ui.md): PingOne Privilege provides a centralized user interface to manage and monitor privileged access across your organization. - [Agent commit tracking](https://docs.pingidentity.com/privilege/agent-privilege/git-server.md): A Git Server is a system used to host and manage Git repositories, allowing teams to collaborate on code and track changes effectively. - [Agent Privilege](https://docs.pingidentity.com/privilege/agent-privilege/index.md): Configure Agent Privilege to secure AI agent access to MCP servers and Git servers through just-in-time, least-privilege access controls. - [Applications](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/cloud/applications.md): Request just-in-time access to SAML applications. - [Choosing a deployment model](https://docs.pingidentity.com/privilege/getting-started/choosing-deployment-model.md): PingOne Privilege offers both agent-based and agentless deployment models to meet different organizational needs and security requirements. - [Cloud](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/cloud/cloud.md): The Cloud section of the admin console provides a catalog of resources for users. - [Cloud resources](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/cloud/cloud-resources.md): Request just-in-time access to Azure subscriptions. - [Configuring a private gateway](https://docs.pingidentity.com/privilege/configuration/network-infrastructure/configuring-private-gateways.md): Add a private gateway to an on-premise or non-AWS cloud network to enable secure access to resources within that network. - [Configuring an AWS gateway](https://docs.pingidentity.com/privilege/configuration/network-infrastructure/configuring-aws-gateways.md): Add an AWS gateway using either the admin console wizard or a Docker command. - [Configuring AWS Elastic Kubernetes Service (Amazon EKS) access](https://docs.pingidentity.com/privilege/configuration/configuring-kubernetes-access/aws-eks.md): The steps to configure your Amazon EKS clusters to allow access management through the PingOne Privilege platform. - [Configuring Azure AKS access](https://docs.pingidentity.com/privilege/configuration/configuring-kubernetes-access/azure-aks.md): The required configurations within the Azure portal to allow PingOne Privilege to discover and manage your Azure Kubernetes Service (AKS) clusters. - [Configuring certificate-based SSH](https://docs.pingidentity.com/privilege/configuration/access-protocols/ssh.md): Configure your managed servers to accept SSH connections that are authenticated by short-lived certificates issued by PingOne Privilege. - [Configuring database access](https://docs.pingidentity.com/privilege/configuration/cloud-accounts/database-access.md): After a database has been discovered, configure its access credentials in PingOne Privilege to enable just-in-time access for your users. - [Configuring gateways](https://docs.pingidentity.com/privilege/configuration/network-infrastructure/gateways.md): Gateways are entry points for accessing resources on a private network, enabling secure sessions and intelligent routing. - [Configuring GCP GKE access](https://docs.pingidentity.com/privilege/configuration/configuring-kubernetes-access/gcp-gke.md): The required configurations within your GCP project to allow PingOne Privilege to discover and manage your GKE clusters. - [Configuring Kubernetes access](https://docs.pingidentity.com/privilege/configuration/configuring-kubernetes-access/index.md): Administrators can configure Kubernetes access for onboarded cloud accounts to enable just-in-time access for teams running containerized workloads. - [Configuring MCP gateways](https://docs.pingidentity.com/privilege/agent-privilege/mcp-gateway.md): The Agent Privilege MCP gateway provides just-in-time access, least-privilege access, and full session visibility and control for MCP servers. - [Configuring network infrastructure](https://docs.pingidentity.com/privilege/configuration/network-infrastructure.md): To provide access to servers and databases in your cloud environment, you might need to configure network infrastructure. - [Configuring PingOne Privilege](https://docs.pingidentity.com/privilege/configuration/index.md): Learn how to set up and customize the PingOne Privilege platform to suit your organization's requirements. - [Configuring private relays](https://docs.pingidentity.com/privilege/configuration/network-infrastructure/private-relays.md): A private relay is designed for deployment in networks that don't allow inbound connections, enabling access to resources within that private network. - [Configuring remote desktop access](https://docs.pingidentity.com/privilege/configuration/access-protocols/rdp.md): When you onboard a cloud account, PingOne Privilege automatically discovers all remote desktop protocol (RDP) instances. - [Create a read policy](https://docs.pingidentity.com/privilege/procyonreadpolicy/create-read-policy.md): Create a read policy in PingOne Privilege to control which non-admin users can view resources matching a specified tag pattern - [Create a tag policy](https://docs.pingidentity.com/privilege/procyonreadpolicy/create-tag-policy.md): Create a tag policy in PingOne Privilege using regex patterns, resource types, and custom tags to control resource visibility - [Dashboard](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/getting-started/dashboard.md): The dashboard provides quick insights into system activity. - [Databases](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/cloud/databases.md): Request just-in-time access to MySQL and Postgres databases. - [Devices](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/devices/devices.md): Every registered device is associated with a user. - [Enable LimitRead](https://docs.pingidentity.com/privilege/procyonreadpolicy/enable-limitread.md): Enable LimitRead in PingOne Privilege to restrict non-admin users from viewing resources until a read policy grants access - [Getting started with Agent Privilege](https://docs.pingidentity.com/privilege/agent-privilege/getting-started.md): Get started with Agent Privilege to secure personal AI agents accessing MCP servers and Git repositories. - [Integrating internal applications](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/access-management/internal-applications.md): Onboard internal web apps and SAML applications for just-in-time access. - [Integrations](https://docs.pingidentity.com/privilege/integrations/index.md): Integrate PingOne Privilege with Jira, Microsoft Teams, ServiceNow, and Slack to manage privileged access requests and approvals - [Jira integration](https://docs.pingidentity.com/privilege/integrations/jira.md): The Jira integration automatically creates and updates Jira issues to track just-in-time access requests. - [Key concepts](https://docs.pingidentity.com/privilege/getting-started/key-concepts.md): Understand the foundational concepts of PingOne Privilege, including PAM, the role of the agent, and how it secures access to cloud infrastructure. - [Kubernetes clusters](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/cloud/kubernetes-clusters.md): Users can request just-in-time access at the cluster, namespace, or pod level. - [Managing access requests](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/access-requests.md): An organization administrator can perform the following actions on a user's just-in-time access requests. - [Managing access requests](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/activity/access-request-approval-logs.md): Review, approve, and manage the lifecycle of user access requests for resources. - [Managing access requests](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/access-management/access-requests.md): Create, view, and manage your just-in-time access requests in the user portal. - [Managing activity logs](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/activity/activity-logs.md): Gain full visibility into user activity and system events. - [Managing cloud resources](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/cloud-accounts.md): When you register a cloud account the PingOne Privilege controller periodically scans the account to discover its resources. - [Managing devices](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/directory/devices.md): Every registered device is uniquely associated with a single user, and each user can have one or more registered devices. - [Managing groups](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/directory/groups.md): Groups are collections of users that can be used to assign access policies efficiently. - [Managing passwordless access](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/access-management/passwordless-access.md): This feature eliminates the need for users to manage or directly handle static credentials, such as passwords or SSH keys, for the target systems. - [Managing policies](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/access-management/policies.md): Policies automatically grant permissions to users or groups based on predefined criteria. - [Managing service accounts](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/directory/service-accounts.md): Service accounts in PingOne Privilege provide secure, just-in-time credentials for programmatic access by applications, scripts, and automation tools. - [Managing session logs](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/activity/session-logs.md): If session logging is enabled for your tenant, PingOne Privilege records all SSH and database sessions. - [Managing users](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/directory/users.md): This topic describes how users and roles are managed for PingOne Privilege. - [Microsoft Teams](https://docs.pingidentity.com/privilege/integrations/microsoft-teams.md): The PingOne Privilege Microsoft Teams integration allows your teams to receive notifications of access requests or approvals. - [Onboarding Amazon Web Services (AWS) accounts](https://docs.pingidentity.com/privilege/configuration/cloud-accounts/aws.md): When you add an AWS account to PingOne Privilege, its resources are discovered automatically and can be managed for just-in-time (JIT) developer access. - [Onboarding Azure accounts](https://docs.pingidentity.com/privilege/configuration/cloud-accounts/azure.md): When an Azure subscription is added to PingOne Privilege, its resources are automatically discovered and can be managed for just-in-time developer access. - [Onboarding cloud accounts](https://docs.pingidentity.com/privilege/configuration/cloud-accounts.md): Enable passwordless, just-in-time access to resources across various cloud infrastructures. - [Onboarding GCP accounts](https://docs.pingidentity.com/privilege/configuration/cloud-accounts/gcp.md): Onboard a GCP organization, folder, or project to manage its resources in PingOne Privilege with Just-In-Time (JIT) access. - [Onboarding users](https://docs.pingidentity.com/privilege/getting-started/onboarding-users.md): This topic describes how organization administrators can onboard users to the PingOne Privilege user console. - [PingOne Privilege](https://docs.pingidentity.com/privilege/index.md): PingOne Privilege documentation home for Privilege Resource Access and Enterprise Personal Agent Access - [PingOne Privilege Release Notes](https://docs.pingidentity.com/privilege/release-notes/index.md): Learn about changes to PingOne Privilege. - [Policies](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/access-management/policies.md): View the details of a policy. - [Remote desktop](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/cloud/remote-desktop.md): Request just-in-time access to Remote Desktop. - [Request access to cloud virtual servers](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/cloud/servers.md): Request just-in-time access to Amazon Web Services (AWS) EC2, Google Compute, and Azure virtual servers. - [Requesting access to AWS IAM roles](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/cloud/aws-role-cli.md): Request just-in-time access to AWS identity and access management roles. - [ServiceNow](https://docs.pingidentity.com/privilege/integrations/servicenow.md): You can integrate PingOne Privilege with ServiceNow to create access request tickets. - [Setting up your environment in PingOne](https://docs.pingidentity.com/privilege/getting-started/setting-up-environment.md): This topic guides administrators through the process of setting up a new environment for PingOne Privilege. - [Slack integration](https://docs.pingidentity.com/privilege/integrations/slack.md): The PingOne Privilege Slack integration allows your teams to receive notifications of access requests or approvals. - [Start here](https://docs.pingidentity.com/privilege/getting-started/getting-started-admins.md): Get started with PingOne Privilege by choosing a deployment model, setting up your environment, accessing the admin console, and onboarding users - [Tenant settings](https://docs.pingidentity.com/privilege/privileged-access-management/admin-tasks/getting-started/tenant-settings.md): Administrators can configure tenant-wide settings from the admin console. - [Troubleshooting PingOne Privilege](https://docs.pingidentity.com/privilege/troubleshooting/index.md): Basic troubleshooting tips are provided here to help you navigate common difficulties with PingOne Privilege - [Troubleshooting the agent](https://docs.pingidentity.com/privilege/troubleshooting/troubleshooting-agent.md): Here are some common problems users have experienced with the PingOne Privilege agent and their solution. - [User UI](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/getting-started/user-ui.md): The user console provides a centralized user interface to request access, manage devices, and view activity associated with devices. - [Viewing Logs](https://docs.pingidentity.com/privilege/privileged-access-management/user-tasks/activity/activity-logs.md): You can view comprehensive activity logs. - [Visibility of resources](https://docs.pingidentity.com/privilege/procyonreadpolicy/visibility-of-resources.md): View resources in PingOne Privilege that non-admin users can see after a read policy grants access based on tag matching - [What is Agent Privilege?](https://docs.pingidentity.com/privilege/agent-privilege/what-is-agent-privilege.md): Agent Privilege provides just-in-time access controls, approval automation, and session auditing for personal AI agents running on behalf of enterprise users. - [What is Human Privilege?](https://docs.pingidentity.com/privilege/getting-started/introduction.md): PingOne Privilege is a cloud-based PAM solution that provides secure, passwordless, just-in-time access to cloud infrastructure and applications. - [What is Privileged Access Management (PAM)?](https://docs.pingidentity.com/privilege/privileged-access-management/what-is-privileged-access-management.md): PAM with PingOne Privilege provides organizations with a modern solution to control, monitor, and secure access to critical resources.