Skip to main content

#Salesforce Admin374 discutindo

Hi everyone,

I'm working on a Revenue Cloud implementation with two sandboxes (both refreshed from the same production org, at different times). In Sandbox A, activating an Order correctly creates Asset records from the OrderItems. In Sandbox B, the exact same flow (Quote → Contract → Order → Activate) leaves the Order in Status = 'Activated' with zero errors, but no Asset is ever created — and querying Asset in that sandbox returns 0 records, period, in its entire history.

What I've already ruled out (identical between both sandboxes):

  • RevenueManagementSettings, OrderSettings (all flags match, including enableEnhancedCommerceOrders=true, enableAutoAddDerivedAsset=true)
  • PermissionSetLicense for Revenue Cloud User / Fulfillment User / Billing / Business Rules Engine — all Active
  • Extended ContextDefinition mapping for Order/OrderItem vs Quote/QuoteLineItem — byte-for-byte identical counts
  • No custom Apex triggers or Flows on Order in either org — it's the pure standard "Activate" action
  • No AsyncApexJob/BackgroundOperation errors around the activation — nothing seems to even attempt the asset generation step
  • TransactionProcessingType: the broken sandbox had zero records while the working one had one marked default (Business Rules Engine). I created a matching record via Tooling API, but the issue persists.

Has anyone run into a case where Asset-Based Order Management (or whatever gates Order→Asset generation) is silently disabled at the org level in a way that doesn't show up in any Settings metadata, Tooling API object, or PermissionSetLicense? Is there a one-time, irreversible enablement step (like "Enable Contract, Asset, and Subscription Management") that a sandbox refresh could leave off even when everything else looks provisioned?

Any pointers on where else to look (or whether this needs a Support case) would be hugely appreciated — this is blocking QA testing for a client go-live. 

 

#Revenue Cloud #Salesforce #Salesforce Admin #Salesforce Revenue Cloud

1 resposta
  1. Sushil Kumar (UKG) Forum Ambassador
    Hoje, 00:58
0/9000

Hi everyone,

I need an architectural sanity check on a security requirement. I want to avoid hitting platform limits down the road and would appreciate some feedback on whether this can be safely achieved using Schedule-Triggered Flows or whether Scheduled Batch Apex would be required.

Context

  • We are changing the Organization-Wide Defaults (OWD) of the standard Quote object from Controlled by Parent to Private.
  • We receive an integration feed from an external system that creates or updates up to approximately 80 Quotes per Account per day. Quotes can also be created manually in Salesforce.
  • Quotes contain two custom Account lookups: Sold-To and Bill-To.
  • We have both Quotes with and without Opportunities.

Requirement

  • The Account Owner of the Sold-To Account and the Account Owner of the Bill-To Account must have Read-Only access to the related Quote.
  • When the Account Owner changes, access to the related Quotes must be updated accordingly, including removing the previous owner's access and granting access to the new owner.
  • The required access is managed through QuoteShare records with RowCause = Manual.

Architectural Question

Given the expected Quote volume and the need to automate the insertion and cleanup of QuoteShare records following Account ownership changes:

  • Is this approach feasible using a standard Schedule-Triggered Flow, or would Scheduled Batch Apex be required to ensure scalability and avoid governor limits?
  • What would be the cleanest architectural pattern for handling the cleanup and creation of Manual QuoteShare records when Account ownership changes?

Thanks for your guidance!

 

 

@Salesforce Administrators & Developers, @Salesforce Administrators and Developers, @APAC Architects, @Data Quality & Management

 

 

#Trailhead Challenges  #Salesforce Developer  #Salesforce Admin  #Salesforce  #Flow  #Apex

3 respostas
  1. 26 de set., 20:40

    @sakshi nagpal

    , would you still recommend using APEX instead flow if the volume of quotes is of up to 80 per day approx. in general and not per account?. 

    @Debarshi Bagchi, sorry if I ask you, I would appreciate any guidance in this sense,

0/9000

Hi everyone,  

I gave my first Salesforce Certified Administrator on 9th march 2026,  but i was unable to clear it at that time now i want to retake the exam but now I do not have 100 $ to spend on the retake how can i get full waiver or how can I get 100 $ voucher/ 200 $ voucher (If i can give a new attempt) 

 

#Free Vouchers  #Trailhead Challenges  #Trailhead  #Salesforce Admin  #Salesforce Developer  #Agentforce  #TrailblazerCommunity

1 resposta
  1. 26 de set., 16:16

    i see an email from salesforce did you get the same for similar topic?

0/9000

 

Account Engagement User Management Page Continuously Loading (Spinner) - Unable to Assign Administrator Access

 

Customer is unable to access

Account Engagement Settings → User Management → Users. The page remains stuck on a loading spinner and never loads, preventing user management and assignment of additional Administrator access.

Impact: Unable to view/manage users.

Request:

Please help on the continuous loading issue on the Users page and advise on any permission, configuration, or backend errors causing the behavior. Screenshot attached for reference. 

 

#Salesforce Developer  #Salesforce Admin  #Systems Administrator  #Advanced-Administrator  #Marketing Cloud  #Pardot B2b Marketing Automation

1 resposta
  1. 26 de set., 15:22

    Hi @Akhilesh Prajapati

    This is Account Engagement (Pardot) territory. The infinite spinner on 

    Account Engagement Settings → User Management → Users is a known symptom pattern, almost always tracing back to the Salesforce↔Pardot connector/session layer rather than an actual "Users" bug. I checked the linked community thread it has 0 replies, so no prior resolution to build on there.

    Here's the diagnostic order I'd work through, most-likely-cause first:

    1. Check Connector authentication statusGo to Account Engagement Settings → Connectors and check the Salesforce connector's status. If it shows an auth error (commonly surfaces as Pardot API Error 184 authentication failure), that alone is enough to hang User Management, since that page pulls live data through the connector session. Reauthenticate the connector user if it's broken.
    2. Confirm the connector user still has correct accessThe user account the Salesforce Pardot connector runs as needs an active Salesforce license, System Administrator (or equivalent) profile, and the Account Engagement Administrator role in Pardot. If that user was deactivated, had their profile changed, or lost the Pardot role assignment, the connector silently fails and pages like this spin forever instead of erroring cleanly.
    3. Rule out browser-side blocking (very common cause)Account Engagement Settings loads inside a Salesforce Canvas app (an iframe calling out to Pardot's API). Third party cookie blocking (Safari/Chrome privacy settings), ad blockers, or browser extensions frequently break this silently. Test in an incognito/private window with extensions disabled, and try a different browser entirely before assuming it's a config issue.
    4. Check Session Settings for Clickjack Protection / IP restrictionsIn Salesforce Setup → Session Settings, aggressive Clickjack Protection settings or 'Lock sessions to the IP address from which they originated' can block the Canvas iframe from completing its callout. Also check Login IP Ranges on the connector user's profile if Pardot's servers aren't whitelisted, the callout can hang rather than fail visibly.
    5. Check for multiple Business UnitsIf this org has more than one Account Engagement Business Unit, User Management can hang if the specific Business Unit context is ambiguous or misconfigured for the logged-in user. Confirm which Business Unit the affected admin is scoped to, and that their Salesforce profile maps correctly to it under Business Unit Setup.
    6. Escalate to Salesforce Support with the network traceIf all of the above check out, open a case with Salesforce Support (this is a Pardot/Account Engagement product issue, not something fixable via Apex/Flow/config alone). Capture a browser dev-tools Network tab trace of the failed page load first the failing XHR call to Pardot's API will usually show the real error code even though the UI just shows a spinner.

    Quickest first move: step 1 (Connectors auth status) and step 3 (incognito/different browser) these two catch the majority of real-world cases of this exact symptom. If the connector shows green/authenticated and it still hangs in a clean browser, jump to step 4 (Session Settings) before assuming it needs a Support case.

     

    I hope you find the above information helpful. If it does, Please mark it as Best Answer to help others too.

0/9000

Hi all,

I'm sorry to report I just failed my first attempt at the Admin certification. I scored well across the board except in two areas: Productivity and Collaboration, and Agentforce, which brought me down. I went in feeling confident, so it was a bit of a surprise. 

 

I'm now looking for additional study material focused on Productivity and Collaboration. A Trailhead search turns up 138 results, which is a lot to sift through on my own. Has anyone taken this exam recently who could point me toward the courses or modules that are most relevant to what's actually tested? Note that I have already taken the Admin beginner and intermediate, as well as the exam prep.

Thanks in advance! 

 

#Salesforce Admin  #Certifications

2 respostas
  1. Ontem 10:21

    Hi Jim, sorry to hear about the near-miss — sounds like it was close. 

     

    Good news: Productivity and Collaboration is officially only 7% of the exam (per the Salesforce Admin Exam Guide), so it's a small, well-defined target, not something you need 138 modules for. It covers exactly four learning objectives: 

    - Activity Management (Tasks, Events, activity reminders/reports) 

    - Chatter (feed, groups — public/private/unlisted, following, security) 

    - Salesforce Mobile App capabilities 

    - AgentExchange/Agentforce use cases 

     

    That last bullet explains why Agentforce and Productivity/Collaboration are both weak spots for you at once — Salesforce folded AgentExchange/Agentforce use-case questions into this same exam section on the current version of the guide, so it's really one combined content area, not two separate ones. 

     

    Best single resource: the official Trailhead module "Study Up on Activity Management and Collaboration" — it's built specifically to prep this exact exam section (not general Trailhead content), and includes scenario questions and flashcards on Chatter, activities, and mobile app capabilities: 

    https://trailhead.salesforce.com/content/learn/modules/administrator-certification-prep-applications-activities-and-mobile/study-up-on-activity-management-and-collaboration

     

     

    Since you've already done beginner/intermediate + general exam prep, this targeted module (30–45 min) plus the flashcards should be enough without re-covering ground you already know — focus your remaining study time on Configuration & Setup and Security & Access instead, since those carry roughly double the exam weight of Productivity and Collaboration and are worth more of your remaining prep time per point.

0/9000

Hi everyone,

I would appreciate some architectural guidance on a Salesforce security requirement.

We need to restrict Sales users from exporting or extracting company-wide financial/reporting data, while they must continue using Salesforce normally, including the Salesforce Mobile App.

Our initial approach was to remove the API Enabled

permission from their corresponding Permission Set Group to prevent API-based extraction tools such as Data Loader or spreadsheet connectors. 

Howeever, I would like to confirm with you, if API Enabled is also required for the Salesforce Mobile App, which Sales users need to use.

Therefore, my questions are:

  1. Is removing API Enabled an appropriate approach for preventing data extraction in this scenario, or would this have unintended consequences beyond the intended restriction?
  2. What would be the recommended Salesforce architecture to restrict API-based data extraction for Inside Sales while keeping access to the Salesforce Mobile App?
  3. Would API Access Control / Connected App allowlisting be a better approach, for example allowing Salesforce Mobile while restricting other API clients?
  4. Are there other Salesforce permissions or security controls that should be considered specifically for preventing report/data export without disabling API access entirely?

The business requirement is specifically to restrict data extraction

, not to prevent Sales users from using Salesforce Mobile or other approved Salesforce functionality. 

 

The focus is on:

  • Reports: No creating, editing, cloning, or exporting.
  • Dashboards: No access to restricted Turnover dashboards.
  • Subscriptions: Prevent receiving Reports/Dashboards via email.
  • List Views: Prevent export/print as an extraction method.
  • Folder Sharing: Prevent indirect access to restricted Reports/Dashboards.

Any guidance or documentation from Salesforce would be greatly appreciated. 

 

@Salesforce Administrators & Developers, @Salesforce Administrators and Developers, @APAC Architects, @Data Quality & Management

 

 

#Trailhead Challenges  #Trailhead  #Salesforce Developer  #Salesforce Admin  #Reports & Dashboards

1 resposta
  1. Ontem 17:08

    Hi Lena, 

    Yes, removing API Enabled would impact the Salesforce Mobile App, since the mobile app requires API access. So I wouldn’t use that permission alone as the control for this requirement.  

     

    A better approach is to keep API access for the users who need Salesforce Mobile and use API Access Control to restrict API access to only approved/allowlisted connected apps. Salesforce supports this model specifically for limiting API access while allowing approved apps.  

     

    For report extraction, also control the Export Reports permission separately. Removing that permission prevents users from exporting report data, while folder sharing and report/dashboard permissions can be used to restrict access to sensitive content. 

    I’d therefore treat this as multiple layers: API Access Control + Report/Folder permissions + Export Reports + subscription/access controls, rather than disabling API access entirely. 

0/9000

 I need to automatically create a Chatter post on a Case whenever its pending approval request is reassigned to another user using the standard Reassign action. Since triggers and record-triggered flows aren't supported on ProcessInstanceWorkitem, and the Case itself doesn't change, I'm not sure how to capture this event. Has anyone solved this, whether with scheduled polling, a custom reassign component, or another approach? Any suggestions or sample code would be appreciated.  

 

#Trailhead  #Salesforce Developer  #Salesforce Admin  #Salesforce  #TrailblazerCommunity  #Sales Cloud  #Apex  #Salesforcecommunity  #Salesforce_developer

2 respostas
  1. Ontem 08:00

    You’re correct that there isn’t a direct trigger point here. ProcessInstanceWorkitem doesn’t support Apex triggers or record-triggered flows, and reassigning the approval doesn’t update the Case itself. 

     

    If you need to keep the standard Reassign action, I’d handle it with scheduled Apex:

    1.  Run a scheduled job every few minutes. 
    2.  Query new ProcessInstanceStep records where StepStatus = 'Reassigned'. 
    3.  Use ProcessInstance.TargetObjectId to identify the related Case. 
    4.  Query the pending ProcessInstanceWorkitem for that process instance to get the newly assigned ActorId. 
    5.  Insert a FeedItem with the Case ID as ParentId. 
    6.  Store the processed ProcessInstanceStep.Id in a small custom log object with a unique/external-ID field. 
    7.  Skip any step already in that log so rerunning the job can’t create duplicate Chatter posts. 

    I’d also test it by reassigning the same approval twice and then running the job twice. The expected result should be two Chatter posts total, with no additional posts from the second job run. 

     

    If real-time posting is absolutely required, the other option is to replace the standard Reassign experience with a custom Flow/LWC backed by Apex. That custom action would update ProcessInstanceWorkitem.ActorId and create the Case FeedItem in the same transaction. But the existing standard Reassign action can’t be intercepted directly.

0/9000

Hi 

I have just completed foundation certificate and now willing to progress more.  

Any recommendations on next trailmix ? Or subjuct area ? 

 

#Salesforce Admin

1 resposta
  1. Ontem 10:08

    Hi Shezeen, congrats on Platform Foundations! 

     

    Official next step, straight from Salesforce's own credential map: Platform Foundations is designed to lead into Salesforce Certified Administrator. That's the natural next milestone since Foundations covers reporting, user admin, data management, customization, and sharing at a conceptual level — Admin builds on exactly that with hands-on configuration depth. 

     

    Trailhead has a purpose-built trailmix for this: search "Prepare for Your Salesforce Administrator Credential" in Trailhead — it's the official study path Salesforce curates for this exact transition. 

     

    Two other paths worth knowing about depending on where you want to go: 

    - If you're more drawn to app/UI building than admin config: Platform App Builder has no prerequisites and can be taken instead of or alongside Admin. 

    - If you want to lean into where Salesforce is investing most right now: the AI Associate certification is free through 2026 and a natural add-on after Admin — it's positioned as the entry point before Agentforce Specialist if you want to move toward AI/Agentforce work later. 

     

    Realistic default if you're unsure: Admin next, then decide between App Builder (declarative/builder track) or AI Associate → Agentforce Specialist (AI track) based on what you enjoyed more in Foundations.

0/9000

For an integration between two Salesforce systems we have been using a dedicated user with System Admin profile, but we maxed out our 10 free NPSP users, so I changed that user to Minimum Access - API Only Integrations profile. 

Now I'm seeing these errors in my Login History: "Failed: API security token required" 

I think there's supposed to be a way to exempt a user from having to provide a security token, but I'm not sure. 

Any advice is appreciated. 

 

#Salesforce Admin  #Salesforce Developer

6 respostas
0/9000

Hello Trailblazers,

I am facing a login loop issue with a System Administrator profile when trying to access the Salesforce Mobile App on an iOS device (iPhone), and I would appreciate your insights.

 

  1. I can log in into the desktop version perfectly using Windows Hello PIN as a registered Built-In Authenticator (Passkey).
  2. When trying to log into the Salesforce Mobile App on iOS, after entering the Username and Password, the app forces a Passkey verification.
  3. The native iOS is still prompting me to use a passkey and there is no chance to choose another verification option. Since the passkey was created locally via Windows Hello, the iPhone cannot resolve it, leading to a dead-end with no option to bypass or cancel.

What I tried so far:

  • I disconnected the Built-In Authenticator from the User's Advanced Details via desktop Setup.
  • Upon trying to log in again on the mobile app, it bypasses the old key but immediately demands the creation of a new Passkey.
  • If I attempt to use a Temporary Verification Code, the login attempt is blocked beforehand by the following error message: 

    "Problem Verifying Your Identity. To log in, you need both a higher access level and an identity verification method. Contact your administrator to gain login access."

Context & Constraints:

  • This is a production environment, so I cannot modify global organization settings (such as changing Session Security Levels or altering My Domain mobile browser behaviors) without a formal change control process. I need a solution targeted either at the user level or understanding why the Mobile API triggers this specific high-assurance restriction for this profile.

 

Has anyone encountered this specific behavior where the Mobile App demands a High Assurance MFA method that blocks the login completely before allowing alternative verification? Any workarounds at the user/permission set level would be highly appreciated.

Thank you in advance! 

 

@Salesforce Administrators & Developers, @Salesforce Administrators and Developers, @APAC Architects, @Data Quality & Management, @SecurityForce

 

 

#Trailhead Challenges  #Salesforce Developer  #Salesforce Admin

3 respostas
0/9000