Permissions
Grant permissions for tenants
Capsule is a framework to implement multi-tenant and policy-driven scenarios in Kubernetes. In this tutorial, we’ll focus on a hypothetical case covering the main features of the Capsule Operator. This documentation is styled in a tutorial format, and it’s designed to be read in sequence. We’ll start with the basics and then move to more advanced topics.
Acme Corp, our sample organization, is building a Container as a Service platform (CaaS) to serve multiple lines of business, or departments, e.g. Oil, Gas, Solar, Wind, Water. Each department has its team of engineers that are responsible for the development, deployment, and operating of their digital products. We’ll work with the following actors:
This scenario will guide you through the following topics.
Grant permissions for tenants
Assign Namespace to tenants
Strategies on granting quotas on tenant-basis
Configure policies and restrictions on tenant-basis
Replicate resources across tenants or namespaces