Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Migration of unmigrated content due to installation of a new plugin

...

The term delegated administration refers to the ability of a site administrator to delegate responsibility for administering SP metadata to another administrator called a delegated administrator. The rationale for delegated administration was discussed in a blog post published early in 2012. The primary motivation for adding this feature to the Federation Manager (FM) is to simplify metadata management for those sites with large numbers of entities in metadata.

{div:style=
Div
Wiki Markup
style
float:right;margin-left:1em;margin-bottom:1ex
}{
Note
}

Watch

a

[

video

demo

|http://www.incommon.org/video/da_demo/]

of

delegated

administration

{note}{div}

Table of Contents
minLevel3

...

For the Site Administrator

{div:style=
Div
Wiki Markup
style
float:right;margin-left:1em;margin-bottom:1ex
}{
Note
}[

Login

to

the

FM

|https://service1.internet2.edu/siteadmin]

as

a

site

admin

{note}{div}

As a site administrator, you have the ability to provision one or more delegated administrators to manage SP metadata. You determine which entity descriptors may be edited by explicitly assigning a delegated administrator to one or more SPs. Any updates submitted by a delegated administrator are bounced back to you for approval, so the risk associated with the delegation of SP metadata is minimal.

...

For the Delegated Administrator

{div:style=
Div
Wiki Markup
style
float:right;margin-left:1em;margin-bottom:1ex
}{
Note
}[

Login

to

the

FM

|https://service1.internet2.edu/siteadmin/federated_login]

as

a

delegated

admin

{note}{div}

As a delegated administrator, you will be able to create new SP metadata and edit existing SP metadata subject to policy. Your privileges have been assigned to you by a site administrator. If you are unable to perform some action, talk to your site administrator. Only a site administrator can assign privileges to a delegated administrator.

...