> For the complete documentation index, see [llms.txt](https://docs.tpi.dev/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.tpi.dev/guide/ac-user-management/delegate-ac-user.md).

# Delegate AC User

<mark style="color:green;">**Path: AC User Management**</mark> <mark style="color:green;"></mark><mark style="color:green;">></mark> <mark style="color:green;"></mark><mark style="color:green;">**Delegate AC User**</mark>

In this section, you can find instructions on how to create AC user accounts using OAuth2.0, LDAP, MLDAP, API and MS accounts. You can create, edit, or delete AC user accounts with the feature.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/hu40JPnbdZmP5ZkwxE0k/image.png" alt=""><figcaption></figcaption></figure>

### Create AC User Accounts

In this section, you can find instructions on how to create AC user accounts using OAuth2.0, LDAP, MLDAP, API and MS accounts. You can create an AC user account for login.

1. Click **Create** to access the AC user account creation page.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/wuUhR4J0W9gPtOR1iBp9/image.png" alt=""><figcaption></figcaption></figure>

2. Fill in the data or make selections as instructed below. The fields marked with “<mark style="color:red;">\*</mark>” are required.

* **User Name**<mark style="color:red;">\*</mark>**:** Fill in the user name.
* **User Alias:** Fill in the user alias.
* **User Email:** Fill in the the email address of the user.
* **Type**<mark style="color:red;">\*</mark>**:** Select the linked account from **OAuth2.0**, **LDAP**, **MLDAP**, **API**, or **MS**, **CUS**, or **OIDC**.
* **Status**<mark style="color:red;">\*</mark>**:** Select the account status from **Request**, **Allow**, or **Deny**.
* **Role**<mark style="color:red;">\*</mark>**:** Specify the role of the user.
* **Organization**<mark style="color:red;">\*</mark>**:** Specify the organization of the user.

3. Click **Create** to save and exit.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/vbLed272ZPEXuKHTPeL1/image.png" alt=""><figcaption></figcaption></figure>

#### **Reviewing and Approving AC User Accounts**

1. Go to **System Configs** > **Setting**, look for AC\_IDP\_LDAP\_REVIEW\_ENABLE, and check whether the value is **true**.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/kjdZzLPG1X5m3iTtgpcy/image.png" alt=""><figcaption></figcaption></figure>

2. The system displays "**Delegate AC user status is 'Request', cannot log in. A letter has been sent to the reviewer. After the review, an email will be sent to notify you.**", indicating that the account created by this SSO must be reviewed before it can be used.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/c1XcLX4kSP0slytw3nwe/image.png" alt=""><figcaption></figcaption></figure>

3. Go to **System Information > Scheduled Tasks** to check whether the approval letter has been sent, and the process has been completed.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/PnaJk4Ji415TjuwSYDYY/image.png" alt=""><figcaption></figcaption></figure>

4. Go to **System Information > Mail Log** to check whether an approval letter has been sent.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/uPdZTOZAaprE9IyEJZGm/image.png" alt=""><figcaption></figcaption></figure>

5. Go to **AC User Management** > **Delegate AC User** to view the users created by SSO, and click on the ![](https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/89OyXJOlIGp1t4ldHjz9/7.png) icon to access the **Update** page. Check **Allow** to change the status to allowed, and click **Update** to proceed.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/klrIxwvB7eRwcTm4CGqU/image.png" alt=""><figcaption></figcaption></figure>

6. Click **LDAP** to access the LDAP login page and log in to the system using the approved SSO account.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/bBkE5V2oR5MGq9C6hcbT/image.png" alt=""><figcaption></figcaption></figure>

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/jLVTGuTJ5FGa4GZEpqn1/image.png" alt=""><figcaption></figcaption></figure>

{% hint style="info" %}
LDAP and MLDAP share the same process.
{% endhint %}

### Update AC User Accounts <a href="#toc169185985" id="toc169185985"></a>

In this section, you can find instructions on how to update the Information about AC user accounts.

1. Click on the ![](https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/BOuvJXDJ50bUePuCBTiE/11.png) icon to access the **Update** page.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/rs012dTb1QdR7Esj7Mbb/image.png" alt=""><figcaption></figcaption></figure>

2. Modify the desired fields, and click **Update** to save and exit.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/k8LVTuzsocsHsWUVMgs1/image.png" alt=""><figcaption></figcaption></figure>

### Delete AC User Accounts <a href="#toc169185986" id="toc169185986"></a>

In this section, you can find instructions on how to delete the AC user account.

1. Search for the AC user account to delete, and click on the ![](https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/97PpK5mgElL9vK4dXxFa/14.png) icon to proceed.

<figure><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/RI1kT7ajmRmBTH6G9sz4/image.png" alt=""><figcaption></figcaption></figure>

2. A warning prompt displaying the message “**Confirm Delete?**” will pop up. Click **Confirm** to delete the AC user account and exit.

<div align="left"><img src="https://content.gitbook.com/content/0choIC1BbdPOkKWOYGgk/blobs/195tHEykO8SwbBmTdUdR/16.png" alt="" width="490"></div>


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.tpi.dev/guide/ac-user-management/delegate-ac-user.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
