Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

When users are assigned to a type/category and a record is created for that type >>the following happens happens 

(1) The system checks each assignees policy permission to the module/area - 

...

BEHAVIOURS ACCORDING TO POLICY PERMISSION OF AN ASSIGNEE: 

ALL = Assignees of type/category with an access policy of ALL should receive all assignee alerts regardless of org unit associated AND be able to see and access all records in module/area area 

OWN UNIT = Assignees of type/category with an access policy of OWN UNIT should receive assignee alerts when a record is created with that type/category PLUS is for the same unit  they have an emp allocation for and they should also be able to view/access these records as well.   

 

Noting that if the ‘Use all Org Units’ setting is applied in system settings for the DB - then users with this ‘OWN UNIT, Own Unit Tree, Own Facility & Selected Units’ access policy should receive assignee alerts and have access to all records created with this type/category that have a unit that they have an emp allocation to >> whether its 1 unit or 10 units the user has an emp allocation to.    

OWN FACILITY = Assignees of type/category with an access policy of OWN FACILITY should receive assignee alerts when a record is created with that type/category PLUS has a unit with the same facility as their employment allocation unit(s) facility(ies) has. 

SELECTED UNITS - POLICY LEVEL = Assignees of type/category with an access policy of SELECTED UNITS - POLICY LEVEL should be able to receive assignee alerts when a record is created with type/category PLUS any unit(s) that has been selected at the policy level AND also be able to view access these records. 

SELECTED UNITS - EMPLOYEE LEVEL = Assignees of type/category with an access policy of SELECTED UNITS -EMPLOYEE LEVEL should receive assignee alerts when a record is created with that type/category PLUS any of the units that are selected at their EMPLOYEE level AND also be able to view access these records

OWN UNIT TREE = Assignees of type/category with an access policy of OWN UNIT TREE should receive assignee alerts when a record is created with that type/category PLUS is associated with an org unit that is within their unit tree + should be able to view/access record.    

NONE or OWN = When a user is an assignee to a type/category however they have an access policy of NONE or OWN to the module/area the below behaviours occur:

...

(2) If user created record: User can see and access those records AND receives assignee alert (if one is configured)   

 

(3) If user is assigned an action on record: User can see and access those records (and should get WTA action alert if it configured lol) 

(4) If user is Person Involved: User can see and access those records  records  

(5) If user is Person In Charge: User can see and access those records

 

Click here to download a copy of the guide:

Image Removed

...

View file
nameUser Security.docx

...