What is Delegated Administration?
In this release, you can delegate fine-grained permissions to perform ZFS administration tasks to non-privileged users. You can use the ‘zfs allow’ and ‘zfs unallow’ commands to grant and remove permissions. You can modify the ability to use delegated administration with the pool’s delegation property. By default, the delegation property is enabled.
Delegated Administration provides traditional System Administrators the ability to delegate some of the user management privileges to people who are closer to the actual end users of the system. These local administrators should be able to manage a subset of the user population, and only the set of access privileges relevant to their functional area. Access control in Oracle Application allows administrators to be designated at any level, internally within the enterprise as well as externally. Clients could internally designate administrators at division or even department levels, and then delegate administration of external users to people within those (external) organizations.