Multi-Tenant Installation in One Identity Manager

Hello everyone,

Has anyone here successfully deployed a multi-tenant installation within One Identity Manager? Specifically, I'm interested in splitting processes between independent instances to address high overload situations. Our organization supports a large number of connectors, attestations, SoD calculations, and other processes, and we're looking for effective ways to manage this load.

Any insights or experiences you can share would be greatly appreciated!

Thank you,

Jakub

Parents
  • in MHO 1IM is by design not multitenant solution. You'll need to do some customizations to achieve some kind of separation on desired levels like server selection scripts, custom permissions and from my experience the hardest and the biggest - template changes (avoid these as much as possible as after maintenance is difficult)

  • Hi Denis, Thank you very much for your comment on the article. The subject is not easy, which is why I am seeking updates, experiences, and remarks from other IAM consultants. I agree with you that this is not simple. I was thinking that I could have, as an example, three OI instances (all with the same setup), but one handles attestation, another handles requests for a few target systems, and the third handles another function. This will require some front-end adjustments, possibly some custom front-end development. However, synchronization between instances will need to be carefully managed. If I am being overly ambitious, please let me know.

Reply
  • Hi Denis, Thank you very much for your comment on the article. The subject is not easy, which is why I am seeking updates, experiences, and remarks from other IAM consultants. I agree with you that this is not simple. I was thinking that I could have, as an example, three OI instances (all with the same setup), but one handles attestation, another handles requests for a few target systems, and the third handles another function. This will require some front-end adjustments, possibly some custom front-end development. However, synchronization between instances will need to be carefully managed. If I am being overly ambitious, please let me know.

Children
No Data