Getting Started With Wasabi Account Control Manager and Custom Cloud Console
    • 11 Jun 2024
    • 5 Minutes to read
    • PDF

    Getting Started With Wasabi Account Control Manager and Custom Cloud Console

    • PDF

    Article summary

    Prerequisites:

    • Wasabi Account Control Manager

    • Custom Cloud Console

    What is the Custom Cloud Console?

    The Custom Cloud Console is a hosted web-based S3 browser for Wasabi Account Control Manager customers to white label as their own. Custom Cloud Console is used by Sub-Accounts to access and manage their Wasabi Storage with your brand front and center.

    How do I customize my Custom Cloud Console?

    The Custom Cloud Console customization is handled by the Wasabi Product Team. During onboarding, you will provide logos and specify the colors you would like to use for your Custom Cloud Console. These colors can be modified by contacting support@wasabi.com.

    Do I need my own domain to use Custom Cloud Console?

    No. All Custom Cloud Consoles come with a unique subdomain of poweredbywasabi.com (example: yourbrand.poweredbywasabi.com).

    If you would like your Custom Cloud Console to be used with your company domain, please contact support@wasabi.com or work with the Wasabi Product Team during onboarding.

    How do customers use my Custom Cloud Console?

    • The customers that use the Custom Cloud Console are the Sub-Accounts you create in Wasabi Account Control Manager. 

    • Members created under a Sub-Account are the users of your Custom Cloud Console.

    • A Member for each Sub-Account is created by the Control Account in WACM. 

    • You will provide them your Custom Cloud Console URL and login information.

    How do I create a new Sub-Account in Wasabi Account Control Manager?

    How do I add Custom Cloud Console Members to a Sub-Account?

    These steps apply to Sub-Accounts that are newly created. For adding Members to Sub-Accounts that were previously created in Wasabi Account Control Manager, please see the steps for “How do I onboard an existing Sub-Account to Custom Cloud Console?”

    1. Once the new Sub-Account is created, go to the Members tab

    1. Click the Create button

    1. Complete the information for the Member being created. 

    Password Reset Required - This will require the Member to change their password upong logging in the first time.

    Members have six different roles: 

    • Root – can perform all actions in the Custom Cloud Console including managing Root Access Keys and managing account Members.

    • Administrator - can perform all actions in the Custom Cloud Console including managing account Members but cannot view Root Access Keys 

    • Full Access – can perform all S3 actions but cannot view Members or Root Access Keys Access Keys 

    • Full Access Limited – same functionality as Full Access but cannot perform S3 Delete actions 

    • Download Only – can view all S3 action including the ability to Download a file 

    • Read Only – can view all S3 actions and cannot Download a file

    1. Once you click Create, a modal will appear with Login information to share with the new Member. You can use the Copy Login Information button to copy all the details so you can paste and send to the Member.

    How do I onboard an existing Sub-Account to Custom Cloud Console?

    The Custom Cloud Console requires S3 Keys that are generated at Sub-Account creation in WACM. Since these Sub-Accounts have been created previously, your Sub-Accounts will be required to enter valid Root Access Keys or Reset the Root Access Keys for this particular account.

    There are a few options:

    1. Enter Root Access Keys by Sub-Account

    2. Reset and Generate New Root Access Keys by Sub-Account

    3. Reset Root Access Keys by Control Account

    Enter Root Access Keys by Sub-Account

    1. Sub-Account logs into the Custom Cloud Console.

    2. Enter the Access Key, Secret Key, then click Save.

    Reset and Generate New Root Access Keys by Sub-Account

    Warning: By performing a Root Access Key Reset, all current existing Root Access Keys will be deleted and replaced with a single new Root Access Key. 

    1. Sub-Account logs into the Custom Cloud Console.

    2. Click on “view other option”

    1. Click Reset to re-generate a new Root Access Key.

    1. Confirm the warning that any existing Root Access Keys will be deleted and replaced with a single Root Access Key.

     

    Reset Root Access Keys by Control Account

    Warning: By performing a Root Access Key Reset, all current existing Root Access Keys will be deleted and replaced with a single new Root Access Key. Please check with your Sub-Account if you are unsure if these keys are in use.

    1. Log in to Wasabi Account Control Manager

    2. Select the existing Sub-Account you want to onboard to your Custom Cloud Console.

    1. Once the new Sub-Account is created, go to the Account tab

    1. Scroll down to the Sub-Account Information section and click “Manage Sub-Account" and choose “ Reset Access Key”

    1. Click “Reset” to complete resetting the Root Access Keys.

    1. Once the keys are reset, this Sub-Account is ready to use your Custom Cloud Console. Follow the steps for “How do I add Custom Cloud Console Members to a Sub-Account?” to complete onboarding for existing Sub-Accounts.

    How to reset the password of a Custom Cloud Console Member?

    The Custom Cloud Console does not send any emails to Members and requires all password resets to be handled by the Control Account Admin in the Wasabi Account Control Manager or by a Sub-Account Member Admin in your Custom Cloud Console.

    To reset the password as a Wasabi Account Control Manager user:

    1. Log in to Wasabi Account Control Manager

    2. Select the existing Sub-Account of the Member that you want to reset the password for.

    1. Once the new Sub-Account is created, go to the Members tab

    1. Select the Member you want to reset the password for.

    1. Scroll down to the Security section and enter a New Password, Confirm Password, and the click the Update Password button to save.

    How to manage Region availability using WACM and Custom Cloud Console (CCC)?

    Wasabi Account Control Manager (WACM) partners using Custom Cloud Console (CCC) can configure region availability by Sub-Account. When the end customers logs into CCC, the only regions they will see in the Create Bucket region dropdown will be what is configured by the Partner in WACM.

    How to set Default Regions for your Custom Cloud Console

    1. Log in to Wasabi Account Control Manager and go to My Profile.

    1. Then select “Regions

    1. Disable regions by using the switch. Disabling a region will hide the region from all Sub-Accounts.

    Note - All Regions that are "enabled" in your Profile will be available to Sub-Accounts but can be disabled at the Sub-Account level.

    How to disable Regions for a Sub-Account

    1. Log in to Wasabi Account Control Manager and go to My Profile.

    1. Select "Regions" from the menu.

    1. Use the UI switch to disable a Region for a Sub-Account. This will hide the Select Region dropdown in the Create Bucket form.

     
    Note: In this example, since the Osaka region was hidden in the previous How to, Osaka is hidden from all Sub-Accounts.

    If we will disable the rest of the Asia Pacific Regions for this Sub-Account.

     
    When the Sub-Account Member logs into the Custom Cloud Console (CCC), they will not see the Asia Pacific Regions when Creating a Bucket.