Users created by delegated administrators can manage their own profiles through PingFederate. Additional configuration steps must be taken to enable users whom delegated administrators create to manage their own profiles through the PingFederate local identity profile-management feature.
This example assumes PingDirectory Server and PingFederate are configured for local identity profile management, following the PingFederate administrator documentation for Customer IAM. Specifically, the entryUUID attribute of the user record must be mapped to the subject of the local identity profile contract in PingFederate's Authentication Policies contract fulfillment.