Enable Users to be Delegates for Account Requests Without Granting Full User Administrative Privileges
To reduce the workload for administrators, a helpful feature would be to enable users to be delegates for account request approval and creation without granting full access to the entire user directory for a particular file directory. This could either be local application user or one mapped back to AD. As it stands right now, if a secondary admin account is created and given access to user management, that account can access and change permissions to the entire user directory aside from other administrators. This could lead to security issues as that administrator could alter other accounts to give them access to privileged information in another directory than the one they have access to.
-
I also agree, it would be fantastic to have 2 users who only aproves the request
0 -
Due to the volume of end users accessing our server via HTTPS, it would be great to have a 'customer admin' user within each of our customers who could over administer their own user accounts.
We would want them to have access to the User Manager and be able to see the accounts within their 'Group' and access only the root folder of their customer account.
0
Please sign in to leave a comment.
Comments
2 comments