Quick Start to Multi-Tenant Management

Cluster Administrator users and Developer Studio Administrator users need to apply for an account before they can use application development. The process is shown in the following diagram.

../_images/admin_flow.png


After the first time login, administrators can create OU, create new roles and accounts, and invite users to OU; then create projects and application development projects to help users get familiar with user and role management under multi-tenancy and quickly get started.


The tenant structure and account system is as follows.

  • The tenant structure is consistent with EnOS Management Console, and both are segregated based on users and resources of the organization.
  • Both cluster management and Developer Studio support local account login and EnOS account SSO login.

Manage Tenants Using Your EnOS Account

Prerequisites

  • Contact Envision Ops to install Cluster Management or Developer Studio modules onsite.
  • System Administrator account has been opened.

Hierarchy of Authority for Tenant Structure

  • System administrators can create organizations, create system users, assign permissions and roles to system users, and authorize organization administrators; organization administrators can add system users to organizations and manage and authorize them. See the following figure.
../_images/sys_admin_ou_admin.png
  • The hierarchy of authority for the container cluster is as follows.
../_images/cluster_admin.png
  • The hierarchy of authority for Developer Studio is as follows.
../_images/devops_admin.png

Procedure

  1. Log in using your system administrator account.
  2. System administrators create new organizations, see Managing OU.
  3. The system administrators create new users, see Managing User.
  4. System administrators and organization administrators manage organizations and organization members, and assign roles, see Managing OU and Member.
  5. System administrators manage roles and the privileges that roles have, see Managing Roles.

Manage Tenants Using SSO Account

Prerequisites

  • Contact Envision Ops to install Cluster Management or Developer Studio modules onsite.
  • System Administrator account has been opened.
  • Configure SSO login and access through SSO login portal, see Single Sign-On.

Procedure

To log in using an SSO account, follow the same steps as for the EnOS account.

  • Application development with SSO configured can open the login page through the portal assigned by EnOS SSO Server and log in by entering the EnOS account and password.
  • In EnOS, a user belongs to an organization’s internal users only. Therefore, after SSO login to the application development, the user becomes a member of the organization by default.