Delegated Admin lets delegated administrators complete the following tasks across groups, subtrees, and entire organizations:

  • Create, view, and search user profiles
  • View user account information, including account status, last login time, and password expiration date
  • Update user attributes
  • Implement constructed attributes
  • Set attributes to read-only
  • Enable and disable accounts
  • Reset locked accounts
  • Create and edit groups
  • Manage the membership of groups and subgroups
  • Manage the roles of users and groups
  • Delete users, groups, and generic resource types
  • Implement custom UI form fields
  • Select user entries based on their Distinguished Names (DNs) without displaying the actual values of the DNs
  • Preview and download reports about user profiles. Reporting provides the following features:
    • Capability to report for resources of a given type, or limited to members of a group
    • Ability to display multiple values per attribute for each user
    • Protection against spreadsheet formula injection
  • Upload CSV files to add user, group membership, or ou records