Skip to main content

Edit tenant account

Contributors netapp-lhalbert

You can edit a tenant account to change the display name, storage quota, or tenant permissions.

Tip If a tenant has the Use grid federation connection permission, you can edit tenant details from either grid in the connection. However, any changes you make on one grid in the connection will not be copied to the other grid. If you want to keep the tenant details exactly in sync between grids, make the same edits on both grids. See Manage the permitted tenants for grid federation connection.
Before you begin
Note Applying tenant settings across the grid could take 15 minutes or longer based on network connectivity, node status, and Cassandra operations.
Steps
  1. Select TENANTS.

    Tenant Accounts page
  2. Locate the tenant account you want to edit.

    Use the search box to search for a tenant by name or tenant ID.

  3. Select the tenant. You can do either of the following:

    • Select the checkbox for the tenant, and select Actions > Edit.

    • Select the tenant name to display the details page, and select Edit.

  4. Optionally, change the values for these fields:

    • Name

    • Description

    • Storage quota

  5. Select Continue.

  6. Select or clear the permissions for the tenant account.

    • If you disable Platform services for a tenant who is already using them, the services that they have configured for their S3 buckets will stop working. No error message is sent to the tenant. For example, if the tenant has configured CloudMirror replication for an S3 bucket, they can still store objects in the bucket, but copies of those objects will no longer be made in the external S3 bucket that they have configured as an endpoint. See Manage platform services for S3 tenant accounts.

    • Change the setting of Use own identity source to determine whether the tenant account will use its own identity source or the identity source that was configured for the Grid Manager.

      If Use own identity source is:

      • Disabled and selected, the tenant has already enabled its own identity source. A tenant must disable its identity source before it can use the identity source that was configured for the Grid Manager.

      • Disabled and not selected, SSO is enabled for the StorageGRID system. The tenant must use the identity source that was configured for the Grid Manager.

    • Select or clear the Allow S3 Select permission as needed. See Manage S3 Select for tenant accounts.

    • To remove the Use grid federation connection permission:

      1. Select the Grid federation tab.

      2. Select Remove permission.

    • To add the Use grid federation connection permission:

      1. Select the Grid federation tab.

      2. Select the Use grid federation connection checkbox.

      3. Optionally, select Clone existing local users and groups to clone them to the remote grid. If you want, you can stop the cloning in progress or retry cloning if some local users or groups failed to be cloned after the last clone operation was completed.

    • To set a maximum retention period or allow compliance mode:

      Note S3 Object Lock must be enabled on the grid before you can use these settings.
      1. Select the S3 Object Lock tab.

      2. For Set maximum retention period, enter a value and select the time period from the pull-down.

      3. For Allow compliance mode, select the checkbox.