跳至主要内容
Administrator Guide
上次更新时间 :2023-06-23
示例:维护对付款方式的访问权限

示例:维护对付款方式的访问权限

对于包含公司网络外部所有用户个人信息的付款方式员工自助服务任务,您希望限制对这些任务的访问权限,以将个人数据面临的风险降至最低。
安全性:
  • “System”功能区域中的
    “Security Administration”域
  • “System”功能区域中的
    “Set Up: Tenant Setup - Security”域
  1. 访问“Manage Authentication Policies”
    任务。
  2. 选择“Add Authentication Policy”
  3. 从“Restricted to Environment”
    提示中选择“Production”
  4. 选中“Authentication Policy Enabled”
    复选框。
  5. 要创建规则来确定用户是否在您的网络内,请在“Authentication Ruleset”
    的第一行中输入以下设置:
    选项 描述
    Authentication Rule Name
    Restrict Access to Payment Elections
    安全组
    所有用户
    Authentication Condition Name
    Inside Corporate Network
    Authentication Condition
    选择“Corporate IP Range”
    ,或者选择“Create IP Range”
    以输入您公司的 IP 范围。
    Allowed Authentication Types
    任何选项
    Access Restriction for Authentication Condition
    留空
  6. 要创建限制网络外部用户的规则,请在第二行输入以下设置:
    选项 描述
    Authentication Condition Name
    Outside Corporate Network
    Authentication Condition
    任何选项
    Allowed Authentication Types
    任何选项
    Access Restriction for Authentication Condition
    选择“Create Access Restriction”
    • 为新的访问限制命名:
      No Payment Election Access
    • 在“Excludes Functionality”提示中选择“Payment Elections”。
    • 单击“OK”
  7. 单击“确定”
    和“完成”
  8. 访问“Activate Pending Security Policy Changes”
    任务。
  9. 输入备注:
    Set up restrictions for payment elections.
  10. 选中“Authentication Policy Enabled”
    复选框。单击“OK”
    ,选择“Confirm”
    ,然后单击“OK”
  11. 访问“Activate All Pending Authentication Policy Changes”
    任务。
  12. 输入备注:
    Set up restrictions for payment elections.
  13. 选中“Authentication Policy Enabled”
    复选框。单击“确定”
    ,选择“确认”
    ,然后单击“确定”
公司网络外部的所有用户(包括管理员)均无权访问以下付款方式任务:
  • 添加账户
  • 添加付款方式
  • 添加我的账户
  • 添加我的付款方式
  • 添加付款方式
  • 更改我的账户
  • 更改我的付款方式
  • 删除账户
  • 删除我的账户
管理员仍然可以访问以下任务:
  • 维护付款方式(仅供查看)
  • 维护付款方式规则
  • 维护付款方式选项