Skip to main content

Setting up JIT database access

This page describes how to self-service the creation of an access request package for a PostgreSQL database.

Overview

  1. To set up JIT access to a Database, you will first need to create an AD group for team members with SC clearance. To create a new group, add an entry to the groups.yml file on the azure-access-repository. Make sure it follows the naming convention: DTS JIT Access DB Reader SC (or Writer, if write access is needed).
  2. Once your PR is merged and the group is created, add it to the azure-access-packages repo. You need to add it under entitlement catalogues and packages. See this example PR
  3. To access the DB, follow the instructions in the guide
This page was last reviewed on 5 August 2026. It needs to be reviewed again on 5 February 2027 by the page owner platops-build-notices .
This page was set to be reviewed before 5 February 2027 by the page owner platops-build-notices. This might mean the content is out of date.