Soru

Zorluk: OrtaRole Hierarchy and Sharing Rules

Apex Cloud Systems manages customer implementation projects using a custom object named Onboarding_Plan__c. The Organization-Wide Default (OWD) for Onboarding_Plan__c is set to Private. To prevent executive leadership from automatically viewing sensitive technical audit notes, the System Administrator deselects the 'Grant Access Using Hierarchies' checkbox on the Onboarding_Plan__c object. However, Senior Implementation Specialists still require Read access to all Onboarding Plan records owned by Junior Implementation Specialists. Which configuration should the System Administrator implement to satisfy this requirement?

  1. Create an owner-based sharing rule that shares records owned by the Junior Implementation Specialist role with the Senior Implementation Specialist role.Cevap
  2. B
    Re-enable the 'Grant Access Using Hierarchies' setting on the Onboarding_Plan__c object so role hierarchy access operates normally.
  3. C
    Create a Permission Set with 'View All' permission for Onboarding_Plan__c and assign it to Senior Implementation Specialists.
  4. D
    Configure the Organization-Wide Default sharing setting for Onboarding_Plan__c to Public Read-Only for users in the Senior Implementation Specialist role.

Cevap

Create an owner-based sharing rule that shares records owned by the Junior Implementation Specialist role with the Senior Implementation Specialist role.
Creating an owner-based sharing rule allows the System Administrator to selectively share records owned by users in the Junior Implementation Specialist role with users in the Senior Implementation Specialist role. Since 'Grant Access Using Hierarchies' is turned off for the custom object, this targeted sharing rule delivers required visibility without exposing records to higher executive roles up the hierarchy.

Adım Adım Çözüm

1
Evaluate baseline access controls and hierarchy settings.
The Organization-Wide Default is set to Private and 'Grant Access Using Hierarchies' is deselected, meaning upper role hierarchy levels do not automatically inherit access.
Deselecting hierarchy access blocks default upward record access propagation in custom objects.
2
Select the appropriate sharing mechanism for targeted record access.
Implement an owner-based sharing rule targeting records owned by the Junior Implementation Specialist role and share them with the Senior Implementation Specialist role.
Owner-based sharing rules enable explicit record access to defined target roles without enabling hierarchy access globally for higher executive roles.

Anahtar Kavram

Owner-Based Sharing Rules and Hierarchy Access Control
Bu soruyu puanla