Set Up Audit Tags
Security:
- Audit Tag (Segmented)domain in the System functional area.
- Set Up: Audit Tags and Assignmentsdomain in the System functional area.
- Set Up: Audit Tags and Assignments - Add Onlydomain in the System functional area.
You can create and assign audit tags to instances of Workday business objects that you want to
monitor for changes. An instance is an occurrence of a business object.
Example: Hire (Default Definition) is an instance of a Business Process Definition business
object; the Income Statement report is an instance of the Report Definition business
object.
When you run reports for these audit tags and instances, Workday displays:
- The trail of changes to the instances.
- Who makes the change.
- How the change is made.
- What changes.
- When it changes.
- The trail from the instance that you're auditing to the change that occurs; the change might be on a related instance.
- Access theCreate Audit Tagtask.
- (Optional) FromAudit Tag Segment, select one or more segments to restrict access to this audit tag. (If you don't select at least 1 segment, you might not be able to access the audit tag depending on your security configuration.) Or access theCreate Audit Tag Segmenttask to create a new segment.You secure access to audit tags on the domain policies for theSetup: Audit Tags and Assignments - Add Onlydomain and theSet Up: Audit Tags and Assignmentsdomain. Under theReport/Task Permissionssection of the domain's security policy permissions, you add a segment-based security group withVieworModifyaccess. You configure security to the audit tag segment on the segment-based security group. Then you can select which segment-based security groups you want to have access to the audit tag segment.
- SelectInactiveif you don't want to use this audit tag when running theAudit Trail Report. If you selectInactiveyou can't assign instances to, or remove instances from, the audit tag.
- (Optional) From the related actions menu of the audit tag, access the task. You can delete the audit tag if there are no instances under it.
- You can assign instances of business process definitions, custom report definitions, user-based security groups, and domain security policies that you want to audit to the audit tag.
- After you assign instances to the audit tag, you can run reports that enable you to see:
- The changes to the instance you tag.
- The changes to the instances that the tagged instance is related to.