✌️IAM User Management
2.3. IAM User Management
2.3.1. Overview
IAM Users are users invited to join the Tenant, who may or may not already have an FPT Cloud/SSO account.
If the invited user already has an account, they can access the authorized VPC immediately after confirmation. If they do not have an account, they will be guided to create a new FPT Cloud account.
During use, if an IAM User needs to use a new Tenant, simply contact support to be granted a Tenant quota.
During use, if the Tenant Owner wants to change the role or revoke access to the tenant for any IAM User, edit the User Group as instructed in section 2.2.5. Edit User group.
For example, User A is in a User Group assigned the Reviewer role, with access to Tenant B.
If you want to revoke User A's access to Tenant B, remove User A from the User Group. User A will then no longer have any access to Tenant B. Similarly, if you want to change the access to a different role, assign the new role to the User Group.
Note: Changing the role for a User Group may affect other Users in that User Group. If you only want to change the role of a specific User, create a new User Group.
2.3.2 Inviting new users to the system
In the menu, select IAM > User, then choose Invite users.

On the Invite User dialog box, enter the required information:
Users: Enter the correct email address to invite. The system will send a verification email to this address, which will be used to access the Cloud Portal.
User group: Select the User group to assign to the User (required field).

Select Invite. The system will check the account and proceed to invite the new user to the VPC and notify you of the result.

After a successful Invite, the new User will be displayed on the User Management page with the following information: Name, Email, User Groups.
2.3.3 Create an account and access the invited VPC
After the Tenant owner sends an invitation to join on the FPT Cloud Portal, the system will send a confirmation email to the previously declared email address. The invited user needs to open the email and confirm the invitation to activate the account.
If the email is not associated with any FPT ID account: The user will need to create an FPT ID account using this email.
If the email is already associated with an FPT ID account: The user only needs to activate the FPT Cloud service on that FPT ID account.

2.3.4. Change password
After the IAM User successfully registers and logs in to the FPT Portal or after a period of use, the User should change their password to ensure account security.
Click on the account name display area in the upper right corner of the FPT Portal > Select Change Password.

On the Change Password dialog box, enter the required information:
Current: Enter your current password.
New: Enter your new password.
Confirm: Confirm the new password.

Select Change Password, the system will process and notify you of the result.

2.3.5 2FA Configuration
2FA (Two Factor Authentication) is a more secure account authentication method by adding an extra layer of security beyond the password. A user's account can only successfully log in to the system if both authentication steps are met.
To enable two-step verification, follow these steps:
Click on the account name display in the upper right corner of the FPT Portal > Select Account Security.

Under Two Factor Authentication, select Set up Authenticator Application.

Install 2FA on your mobile device following the instructions on the Mobile Authenticator Setup page and select Submit.

After successfully configuring 2FA, you will be prompted to enter an OTP generated by the 2FA app each time you log in.
Last updated
Was this helpful?
