A tenant is an isolated workspace in Airlock IAM as a Service. It has its own IAM settings and end-user data. Each tenant runs a separate IAM instance. Tenants are fully isolated from each other; no data is shared between them.
One organization will usually have one tenant that operates in a production environment. It is possible to have additional non-productive tenants, to try out new configurations. Tenants can be created, viewed, edit and deleted.
Prerequisites
For information about the permissions required to manage tenants, including their TLS settings, see Roles and permissions.
Location in the Airlock Console
Tenants can be managed on the Tenants page of the Airlock Console. To access this page, go to:
Administration >> Tenants
Creating a tenant
In the Tenants dialog, click the Create a tenant button.
-
Specify the fields in the appearing window:
Color: Select a color to make the tenant easier to identify. The color appears in the sidebar of the Airlock Console when the tenant is selected. It is also used as the background color in the tenant’s Airlock IAM Adminapp, where administrators manage the end users of the associated customer applications. The color is not visible to end users.
Data center: Enter the region of the data center where the corresponding IAM instance will be deployed. Currently only one region (Switzerland North) is available.
-
Service level: This property specifies the service level and availability of Airlock IAM used by the tenant. Currently, there are two service levels:
Non-production, to test and try out Airlock IAM
-
Production, to use Airlock IAM in a production environment.
Notice
Always start with a non-production service level tenant to test your configuration. Creating a production service level tenant is disabled until all administrators in your organization use a second factor (Airlock 2FA and/or a passkey).Notice
The Service level setting cannot be changed after the tenant is created.
-
Click Create to create the tenant.
➔ The tenant is created. The next dialog shows the settings of the newly-created tenant.Notice
Next to the Tenant tab are the TLS (Loginapp) tab, TLS (Adminapp) tab and the TLS (Transaction approval) tab, which specify the respective TLS settings. By default, regular TLS is used to secure the connection between the server and the client. However, we strongly recommend using mutual TLS for added security. For more information, see Editing the TLS settings further below. To get the tenant instance up and running, apply an initial working configuration using Getting started.
Notice
There is a limit of 30 tenants per organization. If you require more tenants, please contact Airlock Support.
Viewing, editing or deleting a tenant
To view, edit or delete an existing tenant, click the tenant entry in the tenant list on the Tenants page.
➔ The Tenant settings page iin the Configuration tab opens. For details, see Tenant settings.