In the Security Groups application,
you combine the independent
security groups or the security groups that are not independent to
generate a security profile.
When you combine security groups, the following
rules affect approval
limits and tolerances:
- The limits and tolerances that you
authorize for a security group
are at the organizational level. Users inherit authorizations for
only those sites to which they have access.
- If there are two
different approval limit values for the same
limit, the higher value is applied to the security profile for the
user.
- If there are two different values for the same tolerance
type,
the higher value is applied to the security profile for the user.
- If there are two different values for the same tolerance type,
but the security groups that grant the tolerance amount have sites
in different organizations, the higher value for sites within the
same organization is applied to the security profile for the user.
- If a user has access to two different organizations with different
limits and tolerances in each organization, the user inherits the
limits and tolerances for each site to which the user has access in
each organization.
The security profile for a user lists
the specified approval limits
and tolerances.