US 12,294,586 B2
Systems and methods for instance-based permissions for data center management tasks
Jeffrey M. Lairsey, Round Rock, TX (US); Margaret Jenae Patton, Austin, TX (US); Carlin Mendonca, Austin, TX (US); and Saurav Shrestha, Round Rock, TX (US)
Assigned to Dell Products, L.P., Round Rock, TX (US)
Filed by Dell Products, L.P., Round Rock, TX (US)
Filed on Jan. 24, 2022, as Appl. No. 17/582,948.
Prior Publication US 2023/0239307 A1, Jul. 27, 2023
Int. Cl. H04L 9/40 (2022.01)
CPC H04L 63/105 (2013.01) [H04L 63/108 (2013.01)] 20 Claims
OG exemplary drawing
 
1. An IHS (Information Handling System) configured to support a console for use in managing a data center, the IHS comprising:
one or more processors;
one or more memory devices coupled to the processors, the memory devices storing computer-readable instructions that, upon execution by the processors, cause the IHS to:
detect a denial of a request by a lower-level administrator of the data center to perform a management task involving an asset of the data center, wherein the request is denied on the basis of the lower-level administrator having insufficient privileges to perform the management task;
in response to detecting the denial of the request by the lower-level administrator based on insufficient privileges, identify a higher-level administrator with sufficient privileges to authorize a one-time permission for the management task;
automatically upon detecting the denial of the request, issue a request for the one-time permission from the higher-level administrator for the lower-level administrator to perform only the management task;
when approval is received from the higher-level administrator, configure a one-time permission authorizing the lower-level administrator to perform only a single instance of the management task only on the asset of the datacenter;
initiate a monitor that detects state changes for the asset of the datacenter of the denied request; and
upon the monitor detecting a state change for the asset that corresponds to the management task of the one-time permission,
revoke the one-time permission.