Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Show ACL execution plan

Administrators can view how ACLs relate to each other by viewing an execution plan for any ACL in the instance.

Before you begin

Role required: security_admin

Procedure

  1. Elevate to a privileged role.

  2. Navigate to System Security > Access Control (ACL).

  3. Open an ACL with the type record.

Image omitted: acl-type-record.png
ACL type equals "record."
  1. Click Show ACL Execution Plan in the Related Links section.

    The security rules window appears for the ACL. The example displays the execution plan for "vtb_task".

Image omitted: ACL\_execution\_plan.png
An ACL execution plan
|UI item|Description|
|-------|-----------|
|Title|The name of the ACL.|
|Tab name|If the ACL is create, read, write, or delete.|
|Row level|Row-level ACLs that run on this table.|
|Field level|Field-level ACLs that run only on this field \(or column in the table\).|
  1. Click Show all to show all related ACLs, including those ACLs that are overridden and generic ACLs that apply to all records.

    Overridden ACLs have a line through the name, and generic ACLs have the wildcard character asterisk (*) for the name.

  2. Show only the immediate ACLs related to the one you are viewing and hide the ACLs on tables from which the ACL table is extended and the generic wildcard (*) ACLs by clicking Show Effective.