You are here:
Set Up Your Org for Delegated Access
Set up Delegated Access Management, assign permissions, configure student-proxy relationships and record sharing, and add the My Proxies component to case and contact record pages.
Required Editions
| Available in: Lightning Experience |
| Available in: Enterprise, Performance, Unlimited, and Developer Editions with Education Cloud |
| User Permissions Needed | |
|---|---|
| To set up your org for delegated access management: | Education Cloud Full Access permission set AND View Setup and Configuration AND Manage Delegated Access and Related Objects permission set |
Before you set up your org for delegated access:
-
Enable Student Success. See Set Up the Student Success App.
-
By default, students can't access records that they don't own but were created for them. These records may not be shareable using sharing rules. To give students access to these records, change the record owner to the student’s person ID. See Sharing and Record Access Features.
- Configure Delegated Access Automation
Automate the access delegation lifecycle with record-triggered flows and scheduled flows. The flows create delegated users and contact-contact relationships from access requests, keep request records in sync when proxy users sign up or are deactivated, and identify access delegation requests that require updates.
Set Up Your Org
To manage delegated access, set up your org.
- From the gear icon, select Salesforce Go, and then search for Delegated Access Management on the Salesforce Go Home page.
- Turn on Delegated Access Management.
-
To assign permission sets or permission set groups to users for delegated access within
Salesforce Go, find Manage User Access for Staff and Students, and then
click Manage.
permission set Users Manage Delegated Access and Related Objects Advisors and portal users View Delegated Access and Related Objects Proxy users -
To define access boundaries and allow users to delegate access to specific information to
trusted proxies, set up these features within Salesforce Go.
- Student success basics
- Delegate access data sets
- Delegate access definition permission sets
- Data access definitions
- Proxy management on the learner portal
- Record sharing
- Access delegation flows
- Field history tracking for access delegation request status
Turn On Group Membership
To create contact-contact relationships when a student adds a proxy, turn on Group Membership.
- From Setup, in the Quick Find box, enter Group Membership, and then select Group Membership Settings.
- Turn on Create and manage households and groups.
Create Party Role Relationships
To identify the relationship between the student and the proxy, create party role relationships.
- From the App Launcher, find and select Party Role Relationships.
- Click New.
- Enter the role name. For example, enter Guardian.
- Enter the related role name. For example, enter Child.
- For Relationship Object Name, select Contact Contact Relationship.
- Save your changes, and repeat to create party role relationships for other proxies.
Configure Object Access
Enable access to required objects.
- From Setup, in the Quick Find box, enter Sharing Settings, and then select Sharing Settings.
- Under Default Sharing Settings, click Edit.
-
Modify access for objects as shown:
Object Default Internal Access Default External Access Party Role Relationship Public Read Only Public Read Only - Save your changes.
Create a Sharing Set For Students
For students who submit their own requests, create a sharing set.
- From Setup, in the Quick Find box, enter Digital Experiences, and then select Settings.
-
Do one of these actions:
- To create a sharing setting, under Sharing Sets, click New and then enter a label.
- To update an existing sharing set, click Edit for the sharing set.
- Under Select Profiles, add your student profile to Selected Profiles.
- Select the Access Delegation Request object.
- In the Configure Access section, click Set Up.
-
Select these fields:
- User:Contact
- Access Delegation Request:AccessDelegatedBy.Contact
- Access Level: Read Only
- Click Update.
- Save your changes.
- Select the Contact Contact Relationship object.
- In the Configure Access section, click Set Up.
-
Select these fields:
- User:Contact
- Contact Contact Relationship: Contact
- Access Level: Read Only
- Click Update.
- Save your changes.
Configure Case or Contact Record Page
For advisors to see all relevant information on the case or contact record, configure the case or contact record page.
- From the App Launcher, find and select Cases.
- Click any case to view its record page.
- Click Setup, and then select Edit Page.
- In Lightning App Builder, drag the My Proxies component onto the page.
- Customize the component to your requirements.
- Save your changes and activate the page.
- Repeat these steps for a contact record.
