Multitenancy with FortiCloud Organizations
FortiGate Cloud supports FortiCloud Organizations for seamless multitenant features designed for managed security service providers across multiple FortiCloud accounts. With Organizations, Identity & Access Management (IAM) users can view an organizational unit (OU) Dashboard for a single pane of glass view of assets across the entire Organization or OUs. Administrators can add additional users with a fine grained permission model (IAM permission profile) and manage the visibility and access to full Organization or specific OU or OU member accounts. With a FortiCloud Premium license (FC-15-CLDPS-219-02-DD), you can create organizations with no limit of member accounts to be added to the organization. Without the FortiCloud Premium license, you can have a maximum of ten member accounts to add to the organization. See the following for details on various OU tasks:
Task |
Instructions |
---|---|
Creating an organization |
|
Creating an OU |
|
Creating an OU IAM user |
When creating a permission profile in the IAM portal, you must add the FortiGate Cloud portal to the profile, and configure the desired permissions. See IAM users. |
Log in as an OU IAM user |
|
Moving a member account between OUs |
Users with the proper permissions can move a member account between organizational units. |
When you log in to FortiGate Cloud, if OUs are enabled on the account, a selection OU/account selection screen displays. You can select an OU or account to access from this tree.
To move to another OU or account, select the desired OU from the dropdown list in the upper right corner.
OU Dashboard
The OU Dashboard provides a consolidated view of accounts and assets in the given scope of the Organization. The dashboard is available for Organization type IAM users and the visibility of accounts and assets depends on the OU scope selected for the IAM user.
When you access an OU from the OU tree, FortiGate Cloud displays an OU dashboard. The following lists OU dashboard widgets:
Widget |
Description |
---|---|
Devices |
Displays a donut chart that details the device type breakdown and total number of devices in this OU. |
Accounts |
Displays a donut chart that details the total number of accounts in this OU. |
Management connectivity |
Displays a donut chart that details the management connectivity status breakdown and total number of devices in this OU. |
FortiGate subscriptions |
Displays a donut chart that details the FortiGate Cloud subscription type breakdown and total number of devices in this OU. |
Sandbox subscriptions |
Displays a donut chart that details the Sandbox subscription type and total number of devices in this OU. |
Firmware | Displays a donut chart that details the firmware versions on devices in this OU. |
CPU usage | Displays a donut chart that details the CPU usage data on devices in this OU. |
Memory usage | Displays a donut chart that details the memory usage data on devices in this OU. |