Skip to content
Teleport logo

Teleport

DevOps · goteleport.com

¿Es tu herramienta? Reclama esta ficha →

Resumen

Teleport is an infrastructure identity and access platform that issues short-lived cryptographic certificates to every human and machine, replacing VPNs, bastion hosts, and static credentials with certificate-based, audited access to servers, Kubernetes clusters, databases, and cloud consoles.

El problema que resuelve Teleport

Engineering teams managing SSH, Kubernetes, and database access across sprawling, distributed infrastructure typically stitch together VPNs, bastion hosts, and long-lived static credentials — access paths that are hard to audit and easy to leak. Teleport solves this by issuing short-lived cryptographic certificates to every human and machine identity and routing all access through a single proxy, so teams get SSO, role-based access, and full session recording/audit logs without standing privileges or shared secrets.

Contexto para decidir

Usa estos puntos para comprobar si el producto encaja con tu operación, no solo con la lista de funciones.

  • Precio de entrada publicado: Free. Confirma límites de usuarios, uso y funciones por plan.
  • Despliegue: cloud, on_premise. Comprueba requisitos de seguridad, residencia de datos y acceso para todos los equipos que lo utilizarán.
  • Integraciones verificadas: Kubernetes, AWS, Microsoft Azure, Google Cloud, Okta, Microsoft Entra ID. Valida el sentido de sincronización y los límites del plan elegido.
  • La ficha se comprobó por última vez el 30/7/2026; los precios y las funciones pueden cambiar.

Cómo evaluar Teleport

Una ficha ayuda a crear una lista corta; una prueba con el flujo real del equipo decide si la herramienta encaja. Usa esta lectura junto con los datos estructurados y confirma cualquier cambio con el proveedor.

Encaje de flujo

El registro la considera especialmente adecuada para Engineering/platform teams managing SSH, Kubernetes, and database access across distributed infrastructure who want to retire VPNs and bastion hosts, Security/compliance-driven orgs (SOC 2, HIPAA, PCI) needing session recording and audit trails built in, not bolted on, Teams also managing non-human/machine identities (CI/CD, service-to-service, agentic AI workloads) needing secretless auth. Comprueba que ese contexto coincide con el volumen, los roles y los procesos que debe soportar tu equipo.

Preguntas del piloto

  • ¿Puede Teleport completar el flujo crítico sin trabajo manual fuera de la herramienta?
  • ¿Las conexiones registradas (Kubernetes, AWS, Microsoft Azure, Google Cloud) cubren el sentido de sincronización, los permisos y el volumen que necesitamos?
  • ¿Qué límites de usuarios, uso, almacenamiento, soporte o seguridad aparecen después del precio inicial?

Evidencia y vigencia

Esta ficha se comprobó el 30/7/2026. La fecha indica cuándo se revisó el registro, no una garantía de que el proveedor no haya cambiado sus condiciones después.

Ideal para

  • Engineering/platform teams managing SSH, Kubernetes, and database access across distributed infrastructure who want to retire VPNs and bastion hosts
  • Security/compliance-driven orgs (SOC 2, HIPAA, PCI) needing session recording and audit trails built in, not bolted on
  • Teams also managing non-human/machine identities (CI/CD, service-to-service, agentic AI workloads) needing secretless auth

No encaja si

  • Very small teams or solo operators without dedicated infra/platform engineering time — setup complexity is a repeated complaint
  • Teams that just want simple network-layer connectivity without needing access governance, RBAC, or audit

Por qué está listada

  • Certificate-based, passwordless zero-trust access to servers, Kubernetes, and databases — no VPN or bastion host needed
  • Extensive compliance posture: SOC 2 Type II, ISO 27001, PCI DSS 4.0, HIPAA
  • Open-source, self-hostable Community Edition alongside a usage-based Enterprise tier

Precios

Community Edition

Free

Free, open-source, self-hosted infrastructure identity platform for individuals and small teams (under 100 employees, under $10M revenue).

  • SSH, Kubernetes, database, and cloud console access
  • Certificate-based authentication, no static credentials
  • Session recording & audit logs
  • Community support
  • Self-hosted only

Enterprise Standard

Custom pricing

Usage-based pricing on monthly active users and protected resources, for teams retiring VPNs and bastion hosts.

  • Zero Trust access across SSH/RDP/Kubernetes/databases/cloud consoles
  • RBAC & moderated sessions
  • SSO (SAML/OIDC)
  • Session recording & audit logs
  • 170+ integrations
  • Priority support

Enterprise Premium

Custom pricing

Adds Identity Security — access graph, shadow-access detection, and AI session summaries — on top of Standard.

  • Everything in Enterprise Standard
  • Access graph & shadow-access/SSH key scanning
  • Crown-jewel resource alerting
  • AI session summaries
  • Multi-region HA option (99.99% SLA)

Funciones

AI featuresAI Session Summaries exist only within the Identity Security (Premium) add-on; not a general AI feature set.
Alerting & on-callIntegrates with PagerDuty/Jira for access-request and change alerts, but is not itself an alerting/on-call product.
Application performance monitoring (APM)Not an APM tool.
CI/CD pipelinesIssues machine identities into Jenkins/GitHub Actions/GitLab CI/Terraform pipelines; does not run or orchestrate pipelines itself.
Distributed tracingNot offered.
Incident managementNot offered.
Infrastructure monitoringProvides access audit/inventory, not metrics/monitoring.
Log managementStructured audit logs and session recordings are exportable to SIEM, but this is not a general-purpose log management platform.
Public APIDocumented gRPC-based API (tctl/tsh) used by automation and the Terraform provider.
Self-hosting / on-premCommunity Edition (free, self-hosted) and Enterprise Edition self-hosted/hybrid deployment are both real, documented options.

Integraciones

KubernetesAWSMicrosoft AzureGoogle CloudOktaMicrosoft Entra IDGitHubGitHub ActionsGitLabSlackMicrosoft TeamsPagerDutyJiraTerraformJenkins

Seguridad y cumplimiento

SOC 2 Type IIISO 27001:2022ISO 27701:2019PCI DSS 4.0HIPAA

Pros y contras

Pros

  • Certificate-based, passwordless zero-trust access — nothing kept on file, eliminating VPN/bastion dependency (Capterra)
  • Session recording and structured audit logs valued for compliance/troubleshooting (G2)
  • Strong SSO/RBAC integration with existing identity providers (G2)
  • Described as fast, reliable, affordable, and scalable for remote server access (Capterra)

Contras

  • Initial setup is complex and requires dedicated technical resources (Capterra/G2)
  • Steep learning curve integrating multiple cloud environments and SSO providers (G2)
  • Documentation quality criticized as lacking clarity (G2)

Qué muestra el registro

4.4/5
107 reviews agregadasÚltima comprobación 2026-07-30

4.4/5 on G2 (107 reviews); also rated 5.0/5 on Capterra (only 2 reviews, small sample). Reviewers praise certificate-based zero-trust access and audit/session recording, but flag a steep initial setup and configuration learning curve.

Resumen y puntuación agregados de plataformas públicas de reseñas. Enlazamos a las reseñas originales en lugar de reproducirlas — lee la fuente antes de decidir.

Reseñas de usuarios

Escritas por cuentas de Audyense · moderadas antes de publicarse

Todavía no hay reseñas de usuarios.

¿Has usado Teleport? Sé el primero en contarles a otros compradores qué funcionó de verdad.