# Delegate AC User

<mark style="color:green;">**Path: AC User Management**</mark> <mark style="color:green;"></mark><mark style="color:green;">></mark> <mark style="color:green;"></mark><mark style="color:green;">**Delegate AC User**</mark>

In this section, you can find instructions on how to create AC user accounts using OAuth2.0, LDAP, MLDAP, API and MS accounts. You can create, edit, or delete AC user accounts with the feature.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/hu40JPnbdZmP5ZkwxE0k/image.png" alt=""><figcaption></figcaption></figure>

### Create AC User Accounts

In this section, you can find instructions on how to create AC user accounts using OAuth2.0, LDAP, MLDAP, API and MS accounts. You can create an AC user account for login.

1. Click **Create** to access the AC user account creation page.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/wuUhR4J0W9gPtOR1iBp9/image.png" alt=""><figcaption></figcaption></figure>

2. Fill in the data or make selections as instructed below. The fields marked with “<mark style="color:red;">\*</mark>” are required.

* **User Name**<mark style="color:red;">\*</mark>**:** Fill in the user name.
* **User Alias:** Fill in the user alias.
* **User Email:** Fill in the the email address of the user.
* **Type**<mark style="color:red;">\*</mark>**:** Select the linked account from **OAuth2.0**, **LDAP**, **MLDAP**, **API**, or **MS**, **CUS**, or **OIDC**.
* **Status**<mark style="color:red;">\*</mark>**:** Select the account status from **Request**, **Allow**, or **Deny**.
* **Role**<mark style="color:red;">\*</mark>**:** Specify the role of the user.
* **Organization**<mark style="color:red;">\*</mark>**:** Specify the organization of the user.

3. Click **Create** to save and exit.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/vbLed272ZPEXuKHTPeL1/image.png" alt=""><figcaption></figcaption></figure>

#### **Reviewing and Approving AC User Accounts**

1. Go to **System Configs** > **Setting**, look for AC\_IDP\_LDAP\_REVIEW\_ENABLE, and check whether the value is **true**.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/kjdZzLPG1X5m3iTtgpcy/image.png" alt=""><figcaption></figcaption></figure>

2. The system displays "**Delegate AC user status is 'Request', cannot log in. A letter has been sent to the reviewer. After the review, an email will be sent to notify you.**", indicating that the account created by this SSO must be reviewed before it can be used.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/c1XcLX4kSP0slytw3nwe/image.png" alt=""><figcaption></figcaption></figure>

3. Go to **System Information > Scheduled Tasks** to check whether the approval letter has been sent, and the process has been completed.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/PnaJk4Ji415TjuwSYDYY/image.png" alt=""><figcaption></figcaption></figure>

4. Go to **System Information > Mail Log** to check whether an approval letter has been sent.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/uPdZTOZAaprE9IyEJZGm/image.png" alt=""><figcaption></figcaption></figure>

5. Go to **AC User Management** > **Delegate AC User** to view the users created by SSO, and click on the ![](https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/89OyXJOlIGp1t4ldHjz9/7.png) icon to access the **Update** page. Check **Allow** to change the status to allowed, and click **Update** to proceed.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/klrIxwvB7eRwcTm4CGqU/image.png" alt=""><figcaption></figcaption></figure>

6. Click **LDAP** to access the LDAP login page and log in to the system using the approved SSO account.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/bBkE5V2oR5MGq9C6hcbT/image.png" alt=""><figcaption></figcaption></figure>

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/jLVTGuTJ5FGa4GZEpqn1/image.png" alt=""><figcaption></figcaption></figure>

{% hint style="info" %}
LDAP and MLDAP share the same process.
{% endhint %}

### Update AC User Accounts <a href="#toc169185985" id="toc169185985"></a>

In this section, you can find instructions on how to update the Information about AC user accounts.

1. Click on the ![](https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/BOuvJXDJ50bUePuCBTiE/11.png) icon to access the **Update** page.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/rs012dTb1QdR7Esj7Mbb/image.png" alt=""><figcaption></figcaption></figure>

2. Modify the desired fields, and click **Update** to save and exit.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/k8LVTuzsocsHsWUVMgs1/image.png" alt=""><figcaption></figcaption></figure>

### Delete AC User Accounts <a href="#toc169185986" id="toc169185986"></a>

In this section, you can find instructions on how to delete the AC user account.

1. Search for the AC user account to delete, and click on the ![](https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/97PpK5mgElL9vK4dXxFa/14.png) icon to proceed.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/RI1kT7ajmRmBTH6G9sz4/image.png" alt=""><figcaption></figcaption></figure>

2. A warning prompt displaying the message “**Confirm Delete?**” will pop up. Click **Confirm** to delete the AC user account and exit.

<div align="left"><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/195tHEykO8SwbBmTdUdR/16.png" alt="" width="490"></div>
