Gallium inc. EN FR
NASLORD
NASLORD · Multi-Tenant module

Delegate PowerScale administration without giving up control.

NASLORD Multi-Tenant Manager gives each tenant a self-service portal confined to its access zone — SMB shares, NFS exports, quotas and snapshots — while your team keeps the governance, the roles and the audit log.

The operational problem

The storage team has become the ticket desk for everything

Every new share, every quota change, every snapshot policy goes through a ticket. Central administrators become the bottleneck; client teams wait days for five-minute operations.

The native alternative — granting OneFS administration rights to those teams — exposes the entire cluster. Most organizations therefore choose the bottleneck, for lack of anything better.

The NASLORD solution: secure self-service, confined by access zone and user role. Tenants manage their own resources. They never see anyone else’s — nor the cluster itself.

What each tenant can manage on its own

  • SMB sharesCreation, modification, permissions and deletion, within its own zone only.
  • NFS exportsPaths, allowed clients and mount options, in full autonomy.
  • QuotasAdvisory, soft or hard quotas per directory and per user.
  • Snapshot policiesSchedules, retention and restores at the level of its own directories.
  • Consumption and chargebackEach tenant sees its own usage and its own costs.
Comparison

Native OneFS and NASLORD: complementary, not competing

OneFS provides multi-tenant isolation at the platform level — access zones, networks, authentication. NASLORD adds the delegated-administration layer that client teams use every day.

Division of responsibilities between native OneFS and NASLORD Multi-Tenant Manager.
Capability Native OneFS With NASLORD
Access zones, networks and per-tenant authentication Yes — the platform foundation Used as-is
Self-service web portal for tenants Yes
Confined delegation without OneFS administration rights Broad rights required Per-zone roles, no cluster access
Multi-cluster management in a single console One console per cluster All clusters, all OneFS versions
Audit log of tenant actions Generic system logs Audit per zone, per user and per action
Per-tenant chargeback and budgets With the Chargeback & Showback module
The interface

What a tenant administrator sees

Multi-Tenant Manager — Quotas Cluster ISI-PROD-01 · “Research” access zone
SMB shares NFS exports Quotas Snapshots Chargeback Logs
Quotas in the Research access zone with thresholds and status
PathTypeLimitUsed%StatusLast modified
/ifs/research/genomicsHard80 TiB61.4 TiB77%On trackteam-genomics · 2026-07-28
/ifs/research/imagingHard60 TiB52.8 TiB88%Warningteam-imaging · 2026-08-01
/ifs/research/archivesSoft40 TiB38.9 TiB97%Critical thresholdteam-archives · 2026-08-02
/ifs/research/lab3Advisory25 TiB9.1 TiB36%On trackteam-lab3 · 2026-06-14
/ifs/research/exchangeHard10 TiB2.4 TiB24%On trackteam-collab · 2026-05-30
1The zone selector only offers the zones this user is authorized for.
2Every action is logged with the user, zone and timestamp.
3The same views export to PDF, XML and JSON.
NASLORD self-service portal: quota management confined to the “Research” access zone, with thresholds, status and change traceability.
Security and delegation

A delegation model designed to be verifiable

Access-zone confinement

Privileges are granted per access zone and per role. A tenant administrator can neither see nor touch another zone’s resources — the separation is structural, not conventional.

Enterprise authentication

LDAP and Active Directory integration, local accounts where needed, and two-factor authentication (TOTP). NASLORD privileges are managed independently of OneFS roles.

Complete audit log

Every creation, modification and deletion is recorded: who, what, when, in which zone. Browsable per cluster and per zone, exportable for your audits.

Multi-cluster

All your clusters, one console

A single NASLORD appliance manages multiple PowerScale clusters — whatever their size or OneFS version. Tenants that span several clusters are managed in one place, and reports consolidate the entire estate.

  • Unlimited clusters per appliance
  • Heterogeneous OneFS versions supported simultaneously
  • Filesystem browsing and per-directory charts per cluster
  • Consolidated chargeback with the Chargeback & Showback module
Multi-Tenant Manager — Clusters Consolidated view
PowerScale clusters managed by the appliance with their zones and tenants
ClusterOneFSAccess zonesTenantsCapacityStatus
ISI-PROD-019.71291.2 PiBConnected
ISI-PROD-029.586840 TiBConnected
ISI-DR-019.71291.2 PiBConnected
ISI-LAB-019.43296 TiBRead-only
Multi-cluster console: four PowerScale clusters running different OneFS versions, managed from the same NASLORD appliance.

See NASLORD using your own Dell environment.

Connect a test cluster, delegate an access zone, and count the tickets that disappear — for 90 days, at no cost.

Book a Demo 90-Day Trial