---
title: "The Calico Enterprise web console"
description: "Start with the Calico Enterprise web console covering access exposure, authentication, identity-provider integration, and role-based permissions."
product: "Calico Enterprise"
version: "3.23 (latest)"
section: "Operations"
canonical_url: "https://docs.tigera.io/calico-enterprise/latest/operations/cnx/"
---

# The Calico Enterprise web console

## [📄️Configure access to the web console](https://docs.tigera.io/calico-enterprise/latest/operations/cnx/access-the-manager.md)

[Expose the Calico Enterprise web console outside the cluster through ingress, a load balancer service, or port forwarding for administrator access.](https://docs.tigera.io/calico-enterprise/latest/operations/cnx/access-the-manager.md)

## [📄️Authentication quickstart](https://docs.tigera.io/calico-enterprise/latest/operations/cnx/authentication-quickstart.md)

[Sign in to the Calico Enterprise web console and Kibana with default service-account token authentication for a quick first-time setup.](https://docs.tigera.io/calico-enterprise/latest/operations/cnx/authentication-quickstart.md)

## [📄️Configure an external identity provider](https://docs.tigera.io/calico-enterprise/latest/operations/cnx/configure-identity-provider.md)

[Connect an external identity provider to Calico Enterprise so users authenticate against an existing IdP when signing in to the web console and Kibana.](https://docs.tigera.io/calico-enterprise/latest/operations/cnx/configure-identity-provider.md)

## [📄️Configure user roles and permissions](https://docs.tigera.io/calico-enterprise/latest/operations/cnx/roles-and-permissions.md)

[Configure Kubernetes RBAC roles and bindings to scope user access to Calico Enterprise features, tiered policies, observability views, and management plane APIs.](https://docs.tigera.io/calico-enterprise/latest/operations/cnx/roles-and-permissions.md)
