pp108 : Authorize organization administrator to manage packages

Authorize organization administrator to manage packages

This topic provides an overview on configuring authorization options for organization spaces by System Administrators.

Note:

  • You need to have a System Administrator role in the System organization to configure authorization on packages.
  • The packages which are marked as deployable at Organization level are permitted for configuring authorization.

By default, system administrators are allowed to deploy application packages into an organization space. However, by configuring authorization for a given organization space, the system administrator can delegate this task to manage packages to the organization administrator for that space. Based on the level of authorization, the organization administrators will be able to manage application packages within their organization space.

There are two levels of authorization configuration options:

  1. Full Access (Packages in organization and Shared space)
  2. Conditional Access (Selected packages in organization and Shared space)

Full Access (Packages in organization and Shared space)

This option will enable organization administrators to have full control on the application packages that are deployable to organization space. The packages within their organization space can be deployed, upgraded, or undeployed. When this option is configured, the organization administrators will be able to perform the following tasks:

  1. Access to deploy packages that are available in Shared and organization space. 
  2. Upload and deploy packages into their organization space
  3. Deploy, upgrade, or undeploy the packages in their organization space which are already deployed by System administrator

Conditional Access (Selected packages in organization and Shared space)

System administrators can configure this level of authorization option, to ensure access to specific set of packages available in shared and organization space, to organization administrators in their organization space. Additionally, system administrators can give full access to packages in organization space and also authorize the organization administrators to manage a specific set of packages that are available in the Shared space.

Note: When Conditional Access level authorization is configured, the organization administrators will be able to upload new packages into their organization space only when the additional configuration option Full Access to Organization space is selected. Otherwise, the option to upload will be disabled.

Configuring authorization for an organization

  1. Go to System organization and on CUSP > My Applications, click  (Application Deployer). 
  2. Click Configure Authorization icon. Authorization configuration page appears, displaying all the authorized organizations on the right pane.
  3. Click Add authorization icon and click adjacent toOrganization  in the Set Authorization section. A dialog box with a list of organizations is displayed.
  4. Select the required organization from the list and click OK.
  5. Select the type of authorization:
    1. Full Access - to provide complete access to the packages in organization space and organization-aware packages available in the Shared space.
    2. Conditional Access - to provide access to selected set of packages within the organization and Shared space
      1. Select Full Access to packages in Organization space to provide complete access to all the packages within the organization space.
      2. Click Select Packages to authorize specific set of packages. A dialog box a list of packages is displayed.
      3. Select the set of packages to be authorized and click OK. The selected set of packages will be listed in the Authorized Packages table.
  6. Click Authorize to save the authorization configuration.