Steps: Maintain Access to Learning Content
You can restrict access to learning content using segmented security based on:
- Security categories on courses.
- Security categories on programs.
- Topics.
Topic-based segmented security applies separately to programs and courses. Learners can view a program when they have access to all of the topics associated with the program, but can only view each course within the program if they have access to the topics associated with the course.
For Workday Learning, powered by Sana:
- Workers with content creator access needViewandModifypermissins on theManage: Learning Native Contentdomain. Use unconstrained groups when workers must see all native content; use constrained groups so workers see only content they own or that was explicitly shared with them.
- Workers with Learning admin access need catalog and enrollment domains to add submitted Sana content to courses. See Setup Considerations: Workday Learning Powered by Sana.
- User provisioning for Workday Learning, powered by Sana is separate from segmented security. Workers need provisioned integrated access to useSana Createand to openSana Contentlessons, in addition to domain access. See Steps: Set Up User Provisioning for Workday Learning Powered by Sana.
- Access 1 of these tasks:
- Create Learning Security Category
- Create Learning Security Segment
Security:Set Up: Learning Security Segmentsdomain in the System functional area. - If existing security groups don't meet your business requirements, create the security groups to associate with the security segments. Map these groups to 1 or more of the learning security category or topic security segments.The security groups that you grant access to in theGroup Criteriasection must be unconstrained.
- Edit Domain Security Policies.Grant your learning segment-based security groups access on theLearning Accessdomain so that members of these groups can access content on theLearningdashboard.
- Activate Pending Security Policy Changes.
- Access theEdit Tenant Setup - HCMtask.In theLearningsection, select theEnable Security Categoriesoption to display aSecurity Categoryprompt on these tasks:
- Create Course
- Create Program
- Edit Course
- Edit Program
This example illustrates how to grant access for managers to a management-related topic and make other topics available to all.
- Create 3 topics:
- Management
- Health and Safety
- Skills
- Create 2 learning topic security segments. Example:
- Name the first segmentTopics for Managersand select theManagementtopic.
- Name the other segmentPublic Topicsand select theHealth and SafetyandSkillstopics.
- Create 2 segment-based security groups: 1 for managers and 1 for everyone else. Example:
- Managers
- Public
- 1 or more groups fromGroup Criteria. Example:
- ForManagers, selectManager (Unconstrained).
- ForPublic, select:
- All Contingent Workers
- All Employees
- The learning topic security segments to grant access to inAccess Rights. Example:
- Topics for Managers
- Public Topics
Create learning content such as:
- Programs, courses, and stand-alone lessons that contain topics.
- Programs and courses with security categories.
Test the security policy changes.
In Production tenants, a search indexing job runs every 12 hours. In non-Production tenants, this job runs every 24 hours. Depending on the size of your learning catalog, the job itself can take a few hours to complete. The search indexing job is required to populate the
Learning
dashboard and for relevance searching in Learning. After configuring topic-based segmented security, security categories, and associated segment-based security groups and domains, ensure that you allow the appropriate amount of time to pass in your Production or non-Production tenant before testing these changes.For each segment:
- Sign in as a user who's a member of a segment-based security group associated with a topic or security category.
- Verify that you can access the learning content for that segment.