About: Delegated administration is a research topic. Over the lifetime, 12 publications have been published within this topic receiving 388 citations. The topic is also known as: delegation of control.
TL;DR: In this paper, a delegated administration tool enables an administrator to delegate administration and various types of administrative authority to other users within a community of users by creating new administrative domains and assigning authority referred to as delegation authority and edit authority other users.
Abstract: A delegated administration tool for administering information in a database directory. The delegated administration tool enables an administrator to delegate administration and various types of administrative authority to other users within a community of users. In particular, an administrator with proper authority may create new administrative domains and assign authority referred to as delegation authority and edit authority other users. The creation of additional administrative domains and the assignment of the delegation authority and edit authority can continue to an arbitrary level within the community (figure 1).
TL;DR: In this article, a system and method for delegating administration tasks comprising determining at least one capability for a first user based on evaluation of a role rule and delegating the capability to a second user is presented.
Abstract: A system and method for delegating administration tasks comprising determining at least one capability for a first user based on evaluation of at least one role rule and delegating the at least one capability to a second user.
TL;DR: The Custom Access Controller as mentioned in this paper adds a custom security hierarchy to the organizational data in the View Processor of WEBSPHERE Virtual Member Manager, which allows network administrators to create and modify custom security hierarchies.
Abstract: The Custom Access Controller adds a custom security hierarchy to the organizational data in the View Processor of WEBSPHERE Virtual Member Manager. Whenever an entity or application attempts to access a resources the access control engine starts the View Processor to identify the organizational data and assigned security policy for the resource. The assigned security policy is applied to a delegated administration path which is part of the delegated administration hierarchy but includes the appropriate path and security policy for the resource. The delegated administration path is sent to an access control engine that grants or denies access to the resource. A View Processor Interface allows network administrators to create and modify custom security hierarchies.
TL;DR: In this article, the authors propose a system and method for delegating at least one administrative duty associated with namespace management from an authentication system to one administration system, where an application programming interface provides communication between the authentication system and the administration system.
Abstract: A system and method for delegating at least one administrative duty associated with namespace management from an authentication system to at least one administration system. An application programming interface provides communication between the authentication system and the administration system. The authentication system receives a request from the administration system, verifies the authority of the request, and performs the action(s) specified in the request to manage a namespace.
TL;DR: In this article, a server receives a request from a user to perform an operation with respect to one of the hosted resources, and the server determines whether the user has already been delegated authority to perform the operation.
Abstract: Systems and methods for delegating access to resources hosted in a distributed computing environment are described. In one aspect, a server hosts a set of resources. The server receives a request from a user to perform an operation with respect to one of the hosted resources. Responsive to receiving the request, the server determines whether the user has already been delegated authority to perform the operation. The delegated authority is independent of whether the user is a member of an administrators group associated with any resource of the server.