IP Library Granted Patent US 10,447,737
Granted Patent B2
US 10,447,737 · App. 15/185,340 · Granted Oct 15, 2019

Delegating administration rights using application containers

Inventors: Jimmy Hua (San Francisco, CA); Belinda Wong (San Bruno, CA); Aris Chang (Somerville, MA); Anjesh Dubey (Union City, CA); Sukrutha Raman Bhadouria (San Francisco, CA); Bharath Kumar Pareek (Union City, CA)
Assignee: salesforce.com, inc.
H04L63/20H04L63/10H04L63/102H04L63/08
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,447,737
App. No.
15/185,340
Granted
Oct 15, 2019
Kind
B2
Abstract

A computer implemented method for delegating administration duties using application containers may include associating, by a database system, a custom object to a delegated administrator; associating, by the database system, an application container with a custom object; and enabling, by the database system, the delegated administrator to manage the custom object based on permissions included in the application container, wherein the application container includes a subset of permission included in an application permission.

Claims (34)

1. A method comprising:

creating, by a database system, a delegated administrator based on instructions received from a computing system of an administrator;

generating, by the database system, an application container, the application container including a subset of permissions included in an application permission, the subset of permissions being assignable to users by the delegated administrator and providing assigned users access to a plurality of objects;

associating, by the database system, a custom object to the delegated administrator, the delegated administrator having no association with the custom object prior to association;

associating, by the database system, the application container with the custom object, the custom object being associated with the delegated administrator; and

enabling, by the database system, the delegated administrator to manage the custom object based on the subset of permissions included in the application container, wherein managing the custom object includes at least one of assigning and un-assigning the subset of permissions included in the application container to a user managed by the delegated administrator.

2. The method of claim 1 , further comprising enabling, by the database system, the administrator to define one or more application containers based on permissions included in the application permission.

3. The method of claim 2 , wherein a first customized application container is associated with a first custom object and a second custom object.

4. The method of claim 2 , wherein a first customized application container is associated with a first custom object and a second customize application container is associated with a second custom object.

5. The method of claim 2 , further comprising creating, by the database system, a delegated administration group, information about the delegated administration group received by a server computing system from the administrator, wherein the delegated administrator is associated with the delegated administration group.

6. The method of claim 5 , wherein the delegated administrator is a member of at least two different delegated administration groups.

7. The method of claim 5 , further comprising associating, by the database system, the delegated administrator with a user role in an organization, information about the user role received by the database system from the administrator, the user role identifying users and subordinate of the users to be managed by the delegated administrator.

8. The method of claim 7 , further comprising associating, by the database system, the delegated administrator with a profile, information about the profile received by the database system from the administrator, the profile is assignable by the delegated administrator to one or more users managed by the delegated administrator.

9. A computer program product comprising computer-readable program code to be executed by one or more processors when retrieved from a non-transitory computer-readable medium, the program code including instructions to:

create, by a database system, a delegated administrator based on instructions received from a computing system of an administrator;

generate, by the database system, an application container, the application container including a subset of permissions included in an application permission, the subset of permissions being assignable to users by the delegated administrator and providing assigned users access to a plurality of objects;

associate, by the database system, a custom object to the delegated administrator, the delegated administrator having no association with the custom object prior to association;

associate, by the database system, the application container with the custom object, the custom object being associated with the delegated administrator; and

enable, by the database system, the delegated administrator to manage the custom object based on the subset of permissions included in the customize application container, wherein managing the custom object includes at least one of assigning and un-assigning the subset of permissions included in the application container to a user managed by the delegated administrator.

10. The computer program product of claim 9 , further comprising enabling, by the database system, the administrator to define one or more application containers based on permissions included in the application permission.

11. The computer program product of claim 10 , wherein a first application container is associated with a first custom object and a second custom object.

12. The computer program product of claim 10 , wherein a first application container is associated with a first custom object and a second application container is associated with a second custom object.

13. The computer program product of claim 10 , further comprising creating, by the database system, a delegated administration group, information about the delegated administration group received by the database system from the administrator, wherein the delegated administrator is associated with the delegated administration group.

14. The computer program product of claim 13 , wherein the delegated administrator is a member of at least two different delegated administration groups.

15. The computer program product of claim 13 , further comprising associating, by the database system, the delegated administrator with a user role in an organization, information about the user role received by the server computing system from the administrator, the user role identifying users and subordinate of the users to be managed by the delegated administrator.

16. The computer program product of claim 15 , further comprising associating, by the database system, the delegated administrator with a profile, information about the profile received by the database system from the administrator, the profile is assignable by the delegated administrator to one or more users managed by the delegated administrator.

17. An apparatus comprising: one or more processors; and a non-transitory computer readable medium storing a plurality of instructions, which when executed, cause the one or more processors to: create, by a database system, a delegated administrator based on instructions received by from a computing system of an administrator;

generate, by the database system, an application container, the application container including a subset of permissions included in an application permission, the subset of permissions being assignable to users by the delegated administrator and providing assigned users access to a plurality of objects;

associate, by the database system, a custom object to the delegated administrator, the delegated administrator having no association with the custom object prior to association;

associate, by the database system, the application container with the custom object, the customized application container including permissions, the custom object being associated with delegated administrator; and

enable, by the database system, the delegated administrator to manage the custom object based on the subset of permissions included in the customize application container, wherein managing the custom object includes at least one of assigning and un-assigning the subset of permissions included in the application container to a user managed by the delegated administrator.

18. The apparatus of claim 17 , further comprising enabling, by the database system, the administrator to define one or more application containers based on permissions included in the application permission.

19. The apparatus of claim 18 , wherein a first application container is associated with a first custom object and a second custom object.

20. The apparatus of claim 18 , wherein a first application container is associated with a first custom object and a second application container is associated with a second custom object.

Assignments (2)
CHANGE OF NAME Recorded Sep 20, 2023
From: SALESFORCE.COM, INC.
To: SALESFORCE, INC.
Reel/Frame 064974/0185 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 17, 2016
From: HUA, JIMMY; WONG, BELINDA; CHANG, ARIS; DUBEY, ANJESH; BHADOURIA, SUKRUTHA RAMAN; PAREEK, BHARATH KUMAR
To: SALESFORCE.COM, INC.
Reel/Frame 038942/0527 →
Continuity (3)
Continuation In Part 13935074 · Jul 3, 2013
Provisional Application 61667508 · Jul 3, 2012
Related Publication 20160294881A1 · Oct 6, 2016
Cited By (2)
US 12,388,830 US 12,474,980