9. S3 Consideration for Multi-tenancy

Prev Next

VAST enables Cloud Service Providers (CSPs) to consolidate workloads and securely serve multiple tenants from a single platform while retaining strong isolation, flexible access controls, and simplified administration.

S3-Specific Multi-Tenancy Identification

For S3, each tenant is mapped to its own Access/Secret Keys, along with its respective policy controls. This lets CSPs enforce fine-grained authorization per tenant while retaining operational simplicity.

  • S3 Bucket Names: Must be globally unique across the platform, much like AWS S3.

  • Access Keys: Provide per-user authentication and authorization.

  • Client IP Filters (Optional): An additional layer for securing multi-tenant S3 endpoints.

Additional Resources

For detailed instructions, configuration samples, and guidance on setting up S3 multi-tenancy — including policy configuration, view controls, and client IP filtering — please refer to the following article about Configuring S3 Multi-Tenancy.