Skip to main content
Administrator Guide
Last Updated: 2023-06-23
Example: Maintain Access to Payment Elections

Example: Maintain Access to Payment Elections

In order to minimize the risk to personal data, you want to restrict access to payment elections employee self-service tasks that contain personal information for all users from outside your company network.
Security:
  • Security Administration
    domain in the System functional area.
  • Set Up: Tenant Setup - Security
    domain in the System functional area.
  1. Access the
    Manage Authentication Policies
    task.
  2. Select
    Add Authentication Policy
    .
  3. Select
    Production
    from the
    Restricted to Environment
    prompt.
  4. Select the
    Authentication Policy Enabled
    check box.
  5. To create a rule that identifies whether users are inside your network, enter these settings on the first row of the
    Authentication Ruleset
    :
    Option Description
    Authentication Rule Name
    Restrict Access to Payment Elections
    Security Group
    All Users
    Authentication Condition Name
    Inside Corporate Network
    Authentication Condition
    Select
    Corporate IP Range
    , or select
    Create IP Range
    to enter the IP range for your company.
    Allowed Authentication Types
    Any
    Access Restriction for Authentication Condition
    Leave empty.
  6. To create a rule that restricts users outside the network, enter these settings on the second row:
    Option Description
    Authentication Condition Name
    Outside Corporate Network
    Authentication Condition
    Any
    Allowed Authentication Types
    Any
    Access Restriction for Authentication Condition
    Select
    Create Access Restriction
    .
    • Name the new access restriction:
      No Payment Election Access
      .
    • Select
      Payment Elections
      on the
      Excludes Functionality
      prompt.
    • Click
      OK
      .
  7. Click
    OK
    and
    Done
    .
  8. Access the
    Activate Pending Security Policy Changes
    task.
  9. Enter a comment:
    Set up restrictions for payment elections.
  10. Select the
    Authentication Policy Enabled
    check box. Click
    OK
    , select
    Confirm
    , and click
    OK
    .
  11. Access the
    Activate All Pending Authentication Policy Changes
    task.
  12. Enter a comment:
    Set up restrictions for payment elections.
  13. Select the
    Authentication Policy Enabled
    check box. Click
    OK
    , select
    Confirm
    , and click
    OK
    .
All users, including administrators, outside of the company network won’t have access to these payment election tasks:
  • Add Account
  • Add Elections
  • Add My Account
  • Add My Elections
  • Add Payment Elections
  • Change My Account
  • Change My Election
  • Delete Account
  • Delete My Account
Administrators can still access these tasks:
  • Maintain Payment Election
    (View only.)
  • Maintain Payment Elections Rules
  • Maintain Payment Election Options