Quick Start to Multi-Tenant Management

Cluster Administrator users and Developer Studio Administrator users of Enterprise Container Platform need to apply for an account before they can use Enterprise Container Platform. The process is shown in the following diagram.

../_images/admin_flow.png


After logging into Enterprise Container Platform for the first time, administrators can create OU, create new roles and accounts, and invite users to OU; then create projects and application development projects to help users get familiar with user and role management under multi-tenancy and quickly get started with Enterprise Container Platform.


The tenant structure and account system of the Enterprise Container Platform is as follows.

  • The tenant structure of Enterprise Container Platform is consistent with EnOS Management Console, and both are segregated based on users and resources of the organization.
  • Both cluster management and Developer Studio of Enterprise Container Platform support local account login and EnOS account SSO login.

Log in to the Enterprise Container Platform to manage tenants using your EnOS account

Prerequisites

  • Contact Envision Ops to install Enterprise Container Platform Cluster Management or Developer Studio modules onsite.
  • System Administrator account has been opened. For more information on applying for an EnOS account and registering your organization, see Managing Account

Hierarchy of authority for tenant structure

  • System administrators can create organizations, create system users, assign permissions and roles to system users, and authorize organization administrators; organization administrators can add system users to organizations and manage and authorize them. See the following figure.
../_images/sys_admin_ou_admin.png
  • The hierarchy of authority for the container cluster is as follows.
../_images/cluster_admin1.png
  • The hierarchy of authority for Developer Studio is as follows.
../_images/devops_admin1.png

Procedures

  1. Log in to the Enterprise Container Platform using your system administrator account.
  2. System administrators create new organizations, see Managing OU
  3. The system administrators create new users, see Managing User
  4. System administrators and organization administrators manage organizations and organization members, and assign roles, see Managing OU and Member
  5. System administrators manage roles and the privileges that roles have, see Managing Roles

Login to Enterprise Container Platform to manage tenants using SSO account

Prerequisites

  • Contact Envision Ops to install Enterprise Container Platform Cluster Management or Developer Studio modules onsite.
  • System Administrator account has been opened. For more information on applying for an EnOS account and registering your organization, see Apply for an Account
  • Configure SSO login and access through SSO login portal, see Single Sign-On

Procedures

To log in to the Enterprise Container Platform for tenant management using an SSO account, follow the same steps as for the EnOS account.

  • Enterprise Container Platform with SSO configured can open the login page through the portal assigned by EnOS SSO Server and log in by entering the EnOS account and password.
  • In EnOS, a user belongs to an organization’s internal users only. Therefore, after SSO login to the Enterprise Container Platform, the user becomes a member of the organization by default.