## How multi-tenant portal works

Idemeum is designed based on multi-tenant architecture, and it allows you to create multiple tenants / organizations. As an IT team, you can create separate tenants for various organizations, apply access controls, enable different products per organization, and more. As an MSP you can create separate tenants for each customer you manage. There are two types of tenants in idemeum:

### Parent tenant

This is your main tenant residing on your primary domain - `<company-name>.idemeum.com`. Parent tenant is used to create child tenant and manage global settings that apply to all organizations.

### Child tenant

This is a tenant you create for each customer / organization that you manage, and it is accessible at `org1-<company-name>.idemeum.com`, `org2-<company-name>.idemeum.com`, etc. When you install desktop agents, they are associated with child tenants.

## Create child tenant

- Navigate to the admin portal of your parent idemeum tenant
- Access `Tenants` on the left
- Click `Add tenant` and then choose `Add manually`
- Specify the organization `name` (will go into the URL) and the `display name` (friendly description)

Say my parent tenant is `company.idemeum.com`. If `name` → `bank` and `display name` → `banking organization`, then the child tenant → `bank-company.idemeum.com`.
- Save the configuration

## Access child tenant

### Tenant switcher

At the top left side of the screen you can leverage the tenant dropdown to navigate between various organizations.

### Parent tenant app portal

When you switch to the app portal of your parent tenant, you will be presented with all organizations.

### Tenants table

If you access the admin portal of your parent, then navigate to `Tenants` section, you will then be able to click on the link for any customer / organization that you created.

## Delete child tenant

- Access your parent tenant admin portal
- Navigate to `Tenants` section
- Search for the organization you want to delete, click on `...` and then choose `Delete`
