Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Child pages (Children Display)
depth2
allChildrentrue
stylesortAndReverse
excerptTypesimple
first0
sortAndReverse

...

Table of Contents
minLevel1
maxLevel6
outlinefalse
typelist
printablefalse

...

Property

Scenario

Azure Active Directory

As outlined above, for single-tenants we use a heavily governed AAD tenant.

Management Group

Unique Enterprise

Our top level management group

Management Group

Landing Zone Customer 1 (…n)

Each customer has their own management group in order to leverage one subscription per customer

Subscription

Landing Zone Subscription 1 (…n)

Each customer has their own subscription so we can leverage the full capabilities of RBAC, Security Policies, Privileged Access Management and Conditional Access based on a customers need

Tenant architecture

Info

Unique built their setup according to Azures What is a Landing Zone? and their Architecture of an AKS regulated cluster for Payment Card Industry Data Security Standard v3.2.1.

For every detail you can not find in our concept refer first to the official (blue star) documentation.

Gliffy
imageAttachmentIdatt460161072
macroId717b6949-ce35-4231-b8c4-cc5f16b5a33e
baseUrlhttps://unique-ch.atlassian.net/wiki
namesingle-tenants
diagramAttachmentIdatt460587060
containerId436536110
timestamp1710940082204

This is Uniques implementation of our own Infrastructure requirements with additions to empower Terraform and Audit Logs.

...