Permissions in multitenancy
Multitenancy is a requirement for service providers. A service provider can provide access to multiple tenants within the same UCS infrastructure with logical security isolation between tenants so that the resources provided to one tenant cannot be tampered with by another.
UCS multitenancy can be achieved with the following:
- Creation of a sub-organization for each tenant
- Creation of locales to restrict user access to individual sub-organization
For example, we will create two tenants: tenant one and tenant two.
Follow the steps defined in the Organizational structure in UCS Manager section of this chapter and create two tenants. Two organizational units defined as Tenant1
and Tenant2
are shown in the following screenshot:
Follow the steps explained in the RBAC section of this chapter to create two locales for the sub-organizations for the tenants:
Create and map local users as explained in the RBAC section of this chapter: