官术网_书友最值得收藏!

Object-Level Security (OLS)

The first level of access type is Object-Level Security (OLS), as we saw previously on the profile edit page:

These kinds of operations are usually referred to as CRUD operations:

  • Create
  • Read
  • Update (or Edit)
  • Delete

Some of them respect sharing configurations while some do not:

  • Read: Users can view records of this type if the sharing settings allow them to (sharing respected).
  • Create: Users can create and view records (sharing respected regarding the read operation); that is, you cannot have Create without Read enabled.
  • Edit: Users can edit and read records (sharing respected); there can be no Edit without Read.
  • Delete: Users can read, edit, and delete records (sharing respected); there can be no Delete without Read and Edit.
  • View All: Users can see all the records of this object and thus sharing is not respected.
  • Modify All: Users can read, edit, delete, transfer, and run approval on all the records of this object, thereby overriding the sharing settings.

View All and Modify All work like the View All Data and Modify All Data user permissions on profiles, but there should be a better alternative to convey better access granularity to records.

Object accessibility causes the object's tab to be visible to a given user.

View All Data and Modify All Data permissions should be granted to administrators only as they should be the only ones who can view every record in your organization.
主站蜘蛛池模板: 霍山县| 廊坊市| 淮滨县| 新泰市| 皋兰县| 微山县| 广宁县| 乃东县| 商丘市| 射洪县| 达孜县| 喀什市| 洛南县| 那曲县| 奉节县| 衡南县| 泉州市| 乌兰察布市| 濮阳市| 绍兴县| 正定县| 德令哈市| 云阳县| 武邑县| 岐山县| 宣恩县| 新巴尔虎左旗| 长葛市| 庆阳市| 台州市| 彝良县| 巫山县| 宽城| 应城市| 阿拉善盟| 札达县| 大宁县| 兴山县| 祁连县| 凌海市| 新化县|