Setting Group Creation Security
To set up group creation security, use the Group Creation Security (TL_GROUP_FIELD_SEC) component.
This section provides an overview of group creation security and discusses how to set group creation security.
You can prevent users associated with particular row-security permission lists from creating dynamic and static groups that are based on sensitive data. Use the Group Creation Security page to identify the records and fields that are available to users associated with a given row-security permission list when creating and viewing groups. You can designate which of up to six records users can access to define the selection criteria for group membership and the fields within the six accessible records.
Accessible Records
You can grant access to fields within the six records such as JOB, EMPLOYMENT, PERSONAL_DT_FST, SCH_ASSIGN, TL_EMPL_DATA (available only when the Time and Labor option is selected on the Installation Table - Products page) and GP_PYGRP (available only when Global Payroll Core is selected on the Installation Table - Products page).
Page Name |
Definition Name |
Usage |
---|---|---|
TL_GRP_FLD_SEC |
Prevent row-security classes from creating groups that are based on sensitive data. |
Use the Group Creation Security page (TL_GRP_FLD_SEC) to prevent row-security classes from creating groups that are based on sensitive data.
Navigation:
This example illustrates the fields and controls on the Group Creation Security page. You can find definitions for the fields and controls later on this page.

Field or Control |
Description |
---|---|
Refresh Record Security |
Click to retrieve all records and fields that you have authority to access. The system clears previously defined access instructions for the row-security permission list identified on this page. This refresh feature is appropriate when:
Warning! If you refresh record security after granting access to certain records and fields, the system clears all access definitions. |
Allow Full Access |
Click to enable users associated with the row-security permission list to access all six records when creating and viewing groups. The system automatically selects all fields for all records that users have authority to access, according to the assigned row-security permission list. |
Remove All Access |
Click to prevent all users associated with the row-security permission list from using any of the six records and related fields as selection criteria when creating groups. Users are also prevented from viewing groups with membership based on these records. The system clears all check boxes for all six records. |
Record
Field or Control |
Description |
---|---|
Allow Record Access |
Click to allow access to all fields in the record that is currently displayed. The system automatically selects the Accessible check box to the right of each field name. |
Remove Record Access |
Click to disallow access to all fields in the record that is currently displayed. The system automatically clears the Accessible check box to the right of each field name. |
Record Field Accessibility
Field or Control |
Description |
---|---|
Accessible |
Indicates whether users have the ability to include the field within the selection criteria that they specify when creating groups. |