Page Properties | ||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| status
| colour
| Red
| |||||||||||||
RessourcesResources & Remarks Identity and access management - (keycloak Verwaltung - user,roles / tenant - Klammer drüber is in einer extra Datenbank - multi tenancy clustering) Die Landing Page zur Registierung eines neuen System Integrators als Kunden sowie der Verwaltung seiner Mandanten ist eine typische Managment Console ist, die Cloud-Betreiber den Administratoren zur Hand geben. Als Name für diesen Funktionsblock bietet sich die übliche Bezeichnung IAM für Identity and Access Management an. Als Arbeitstitel bis zum TA-POC schlage ich den Komoponentennamem yuuvis management console vor. Wir werden diese Komponente voraussichtlich auf den Bibliotheken des Clients aufsetzen. Die Arbeit hat quasi heute mit der Konzeption begonnen. An die ersten Stories gehen wir im nächsten Sprint. Die wesentlichen Arbeiten werden voraussichtlich durch Andreas S. (Frontend) und Michael (Backend) erfolgen, sowie anderen Teilen seitens Oktopus Team (Create Tenenat / Delete Tenant). | ||||||||||||||||
Excerpt | ||||||||||||||||
As of version 2.4 the yuuvis® Momentum management console will support you in your identity and access management - setting up multiple tenants, users, and their roles. Modification History
|
Note | ||
---|---|---|
| ||
This Service is not part of yuuvis® Momentum anymore as of product version 2022 Autumn. |
Excerpt |
---|
yuuvis® management console supports organizations in their tenant and user management, and hosts in package and organization management by means of a graphical user interface. |
Section | ||||||
---|---|---|---|---|---|---|
| ||||||
|
yuuvis® management console has two groups of users. Organization members see the organization view after login whereas host users see the host view. The offered functionality differs for the target groups.
yuuvis® management console is based on the so-called management console API. Tool and API are both installed via the management
Helm Chart. After installation and configuration, yuuvis® management console can be accessed via the following URL: https://console.<cluster-domain>
.
The user management for tenants in yuuvis® management console works with the default roles.
yuuvis® management console uses the Tenant Management API.
Configuration
In order to allow for tenant management via yuuvis® management console, a manual configuration is required for the identity management as well as yuuvis® Momentum. Find here guidelines for all the necessary steps to prepare your yuuvis® Momentum cluster.
>> Setting up yuuvis® management console
Registration and Forgotten Password
New organization members are invited via e-mail with a registration link which they have to follow. The invitation view of yuuvis® management console is opened in a new browser tab. If the invited users click Accept, they are guided to the login page. New users have to click Register for their first login. They have to fill a form asking for First name, Last name and Email. The users have to set and confirm their personal password.
Registered members can set a new password by clicking Forgot password? on the login page. The members have to enter their e-mail to which a link will be sent. A click on this link will open a page where a new password can be set.
Managing Tenants
yuuvis® management console allows you as an organization to manage separate tenants that cannot interact with each other. You can define the resource limits for your tenants via packages and check the consumption of their resources via metrics.
Managing Organizations
Host users logged in are able to manage organizations as instances for tenant management and to manage packages. The packages are sets of data storage limits that can be applied to tenants. To each tenant, exactly one package is assigned that defines the maximum number of documents and the maximum amount of storage. The selection of the package is up to the organization managing the tenant.
>> Host View
Info | |||||||||||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| |||||||||||||||||||||||||||||||||||||||||
Read on
|