|
|
|
Creating a Security Group: Through this activity, you can create a security group. A security group refers to a set of users for whom similar access permissions to employee details can be given based on user-role-business process chain combinations.
Creation of a security Group would facilitate defining data level security privileges for a set of users instead of doing the same for each user individually. This feature would be useful if organization has sets of users who have permissions to the same employee assignment set.
You can create a security group with the following attributes:
A unique code to identify the security group.
A short description for the security group. Optionally, you can enter a long description also to make the short description more clear.
A rule to serve as the basis for a user to be associated with the particular security group.
Rule: The Users who should constitute the group can be specified using the help on user-role combination. The Users of a group could also be arrived by using a rule. If the rule is used, additional users could be added to the group over and above those arrived at by using the rule as exceptions. The Users arrived by Rule would have their Basis as ‘Rule’ and the Users added as exception would have their Basis as ‘Exception’. The users who were added by accessing the help on user-role combination will have their basis as “Direct”. The ‘Basis’ is to indicate how the user became a part of the group.
The Rule is again a stored procedure builder. The rule would give as output all those User-Role combinations, which satisfy the rule criteria.
If a group has users with basis as ‘Direct’ these users could be deleted. The users added as exception could also be deleted. But users arrived by a rule could only be made inactive and not deleted.
This rule could allow adding new users to a group if these new users satisfy the rule criteria and remove users from the group if they do not satisfy the rule criteria anymore. Rule ensures no one has to manually change the constitution of the group on promotion or transfer.
Also, the users arrived at by using a rule could also be made inactive. To conclude, you can enter any additional comments with regard to the details specified.
Getting familiar with the pages inside
Go to page |
To carry out tasks |
|
Create Security Group |
Creating a security group |
|
Maintain Stored Procedure |
Defining a new rule |
|
Business Rules Security Permissions |
Setting security permissions for the business rules |
|
What you can do in this activity