Page Properties | ||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ||||||||||||||||||||||
Resources & Remarks Identity and access management - (keycloak Verwaltung - user,roles / tenant - Klammer drüber is in einer extra Datenbank - multi tenancy clustering) Die Landing Page zur Registierung eines neuen System Integrators als Kunden sowie der Verwaltung seiner Mandanten ist eine typische Managment Console ist, die Cloud-Betreiber den Administratoren zur Hand geben. Als Name für diesen Funktionsblock bietet sich die übliche Bezeichnung IAM für Identity and Access Management an. Als Arbeitstitel bis zum TA-POC schlage ich den Komoponentennamem yuuvis management console vor. Wir werden diese Komponente voraussichtlich auf den Bibliotheken des Clients aufsetzen. Die Arbeit hat quasi heute mit der Konzeption begonnen. An die ersten Stories gehen wir im nächsten Sprint. Die wesentlichen Arbeiten werden voraussichtlich durch Andreas S. (Frontend) und Michael (Backend) erfolgen, sowie anderen Teilen seitens Oktopus Team (Create Tenenat / Delete Tenant). Modification History
|
...
yuuvis® management console is based on the so-called management console API. Tool and API are both installed via the management
Helm Chart. After installation and configuration, yuuvis® management console can be accessed via the following URL: https://console.<cluster-domain>
.
The user management for tenants in yuuvis® management console works with the same role set that is used for yuuvis® client as reference implementation.
yuuvis® management console uses the Tenant Management API.
Configuration
...
In order to allow for tenant management via yuuvis® management console uses Keycloak for authentication. Some preparations are necessary in order to apply the required settings in Keycloak. The steps of configuration and the values to be set are described in this article.>> Keycloak Settings for , a manual configuration is required for the identity management as well as in yuuvis® Momentum. Find here guidelines for all the necessary steps to prepare your yuuvis® Momentum cluster.
>> Setting up yuuvis® management console
Registration and Forgotten Password
New organization members are invited via e-mail with a registration link which they have to follow. The invitation view of yuuvis® management console is opened in a new browser tab. If the invited users click Accept, they are guided to the login page. New users have to click Register for their first login. They have to fill a form asking for First name, Last name and Email. The users have to set and confirm their personal password.
Registered members can set a new password by clicking Forgot password? on the login page. The members have to enter their e-mail to which a link will be sent. A click on this link will open a page where a new password can be set.
Managing Tenants
yuuvis® management console allows you as an organization to manage separate tenants that cannot interact with each other. You can define the resource limits for your tenants via packages and check the consumption of their resources via metrics.
Managing Organizations
Host users logged in are able to manage organizations as instances for tenant management and to manage packages. The packages are sets of data storage limits that can be applied to tenants. To each tenant, exactly one package is assigned that defines the maximum number of documents and the maximum amount of storage. The selection of the package is up to the organization managing the tenant.
>> Host View
Info | |||||||||||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| |||||||||||||||||||||||||||||||||||||||||
Read on
|
...