Loading

Federation ID field on User detail page is not visible

게시 일자: Oct 13, 2022
상세 설명
Federation ID field on User is used in SAML SSO (Single Sign On) settings. This field does not appear on the user page layout editor or on the user record page by default.
솔루션

The Federation ID User Field can only be accessed and edited by users who meet one of the following conditions:

 

1. Users with 'Manage Users' permission. This can be granted via the Profile or a Permission Set. You can find 'Manage Users' permission under System Permissions on Profile.

 

Enabling 'Manage Users' requires these permissions:

Reset User Passwords and Unlock Users, View All Users, Manage Profiles and Permission Sets, Assign Permission Sets, Manage Roles, Manage IP Addresses, Manage Sharing, View Setup and Configuration, Manage Internal Users, Manage Password Policies, Manage Login Access Policies, Manage Two-Factor Authentication in User Interface.

 

Note: Be cautious when granting this permission. SAML Federation ID field on the User object can be unintentionally and unknowingly exposed to non-admin users via custom report types if the custom report type includes this field and it is deployed. It is not possible to use FLS to restrict visibility of the "Federation ID" field and this is a security gap.

 

2. Users who are Delegated Admins. Delegated Admins can access the Federation ID field for users that fall under the specified Role in User Administration.


 

Knowledge 기사 번호

000386215

 
로드 중
Salesforce Help | Article