Soru

Zorluk: KolayRole Hierarchy and Sharing Rules

A System Administrator creates a custom object named Internal_Feedback__c with an Organization-Wide Default (OWD) set to Private. Executive leadership requires that record access for this object must NOT automatically roll up to superior roles in the role hierarchy. Which setting on the Sharing Settings page should the administrator modify to meet this requirement?

  1. Deselect the "Grant Access Using Hierarchies" checkbox for the Internal_Feedback__c object.Cevap
  2. B
    Change the Organization-Wide Default (OWD) setting for Internal_Feedback__c from Private to Public Read-Only.
  3. C
    Remove Object-Level Read permissions for Internal_Feedback__c from the Manager profile.
  4. D
    Create an owner-based sharing rule to restrict record visibility to record owners only.

Cevap

Deselect the "Grant Access Using Hierarchies" checkbox for the Internal_Feedback__c object.
Deselecting the 'Grant Access Using Hierarchies' checkbox on the Sharing Settings page for a custom object prevents users above the record owner in the role hierarchy from automatically gaining access to those records. Standard objects always have this setting enabled and grayed out, but custom objects allow administrators to toggle it off.

Adım Adım Çözüm

1
Identify the mechanism controlling automatic vertical access inheritance for custom objects.
By default, Salesforce enables 'Grant Access Using Hierarchies' for custom objects, causing users in higher roles to automatically inherit record access granted to subordinate roles.
Understanding default hierarchy behavior helps locate the setting that disables automatic access rollout.
2
Determine how to disable vertical access propagation for custom objects on the Sharing Settings page.
Deselecting the 'Grant Access Using Hierarchies' checkbox for the specific custom object disables automatic record sharing up the role hierarchy.
This setting is configurable on custom objects, allowing administrators to restrict record visibility strictly to owners and explicitly shared users.

Anahtar Kavram

Grant Access Using Hierarchies for Custom Objects
Bu soruyu puanla