Links

Cross-Tenant Access

Allow multiple Tenants access to the same resources
These features are currently only available for AWS.

Allowing Cross-Tenant access based on Security Groups

To allow access between two Tenants, based on Security Groups in the underlying Cloud Platform, perform this procedure using the Tenant Security tab. For services that are restricted by IAM policies, see Cross-Tenant access to restricted policy-based resources.
  1. 1.
    In the DuploCloud Portal, navigate to Administrator -> Tenants.
  2. 2.
    Select the Tenant whose resources you want to share from the Name column.
  3. 3.
    Click the Security tab.
  4. 4.
    Click Add. The Add Tenant Security pane displays.
  5. 5.
    From the Source Type list box, select Tenant.
  6. 6.
    From the Tenants list box, select another Tenant with which you want to share resources.
  7. 7.
    From the Protocol list box, select the protocol that you want to use for sharing.
  8. 8.
    In the Port Range field, specify the range of ports to which you want to grant access.
  9. 9.
    Add a user-friendly Description of this sharing rule.
  10. 10.
    Click Add.
Add Tenant Security pane

Cross-Tenant access to restricted policy-based resources

To allow access, or create a share, between two Tenants for services that are restricted by IAM policies, perform this procedure using the Tenant Grants tab. To establish general non-IAM restricted Cross-Tenant access, see Allowing Cross-Tenant access to non-restricted services.
Ensure that the two Tenants that are sharing resources reside within the same region in the AWS Portal.
  1. 1.
    In the DuploCloud portal, navigate to Administrator -> Tenants. The Tenants page displays.
  2. 2.
    From the Name column, select the Tenant with access to the restricted resource that you want to share. In this example, we choose to share resources to which Tenant uat-01 has access.
  3. 3.
    Click the Grants tab. Select Allow Other Tenants to access TENANT_NAME, where TENANT_NAME is the Tenant you selected.
    Grants tab with Allow Other Tenants to access TENANT_NAME option
  4. 4.
    Click Add. The Grant Cross-Tenant Access pane displays.
    Grant Cross-Tenant Access pane
  5. 5.
    From the Requesting Tenant list box, select the Tenant with which you want to share access. In this example, the Requesting Tenant is demo01.
  6. 6.
    From the Access to Area list box, select the restricted policy-based resource that you want to share.
  7. 7.
    Click Create. Your Cross-Tenant Access share is created.

Viewing Cross-Tenant grants to restricted policy-based resources

  1. 1.
    In the DuploCloud portal, navigate to Administrator -> Tenants. The Tenants page displays.
  2. 2.
    From the Name column, select the Tenant whose Cross-Tenant grants you want to view. In this example, we select Tenant uat-01.
  3. 3.
    Click the Grants tab. Select Allow Other Tenants to access TENANT_NAME, where TENANT_NAME is the Tenant you selected.
  4. 4.
    The resources that TENANT_NAME (uat-01, in this example) has access to are displayed.