Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Proxy and delegation solutions are often application-specific.  For example, in the faculty example above, the same application that is used to gather final grades would provide a user-interface for the faculty member to manage the delegation of grading.

Examples


An adminstrator is granted access to approve purchase orders in his department.  The administrator is going to be on vacation for two weeks and needs to delegate authority to another individual while he is away.A faculty member Professor Smith, by virtue of being the named instructor of a course, is granted access to print photo class rosters, to post course materials on the LMS site, and to enter official grades for the students at the end of the semester.  The faculty member Professor Smith wishes for her teaching assistant to print the class roster at the beginning of the semester and post materials to the LMS site, and plans to ask her administrative assistant to enter the final grades for the course.

At the University of Michigan, faculty enter grades perform a variety of course-related activities using the PeopleSoft system of record.  We built a bolt-on application that allows the faculty to delegate gradingdifferent tasks, and an automated batch process runs each day to grant/remove the PeopleSoft access role based on the faculty member's choices.  The process also interfaces the role assignments to the LMS system.  In other environments, multiple applications may need to be managed.
Professor Smith has asked an honors student he is advising to view blog posts from her intro level film class on a daily basis and grade them, then entering the grades into the CMS gradebook. If the class is blogging in WordPress and using Moodle gradebook, he can use group assignments in LDAP to provision the TA role for both applications, rather than manage it on and app-by-app-basis

For the UM online directory, individuals can grant proxy access to any other member of the UM Community to manage directory attributes on their behalf.  Proxy access is stored as an LDAP attribute on the in indivuidual directory entry.