---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Baseline version 4.0

# New hardening settings for baseline version 4.0 {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 30. Juni 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

New hardening settings have been released with Security Center baseline version 4.0.

* [Review extraneous explicit role access control conditions \[Removed in Security Center 1.5\]](JId9U3_j2TUuhTMrYDyQHA "The Explicit Roles plugin is recommended to mandate that all users have either the snc_internal role to access internal resources, or the snc_external role to access external resources.")
* [Enable work order management query rules for service organizations \[New in Security Center 1.5 and updated in 2.0\]](~hl5y2gk_GYFYPHWcd4Fbw "Use the sn_fsm.use_query_rules property to apply rules and filters to the Field Service Management tables.")
* [Restrict flow context read access \[New in Security Center 1.5\]](qVl6kq6L69OMJ1o_bNfXZw "Use the com.snc.process_flow.reporting.require_flow_access property to enforce if an additional access check is required for a user to read a flow check.")
* [Limit policy based session access mobile refresh token interval \[New in Security Center 1.5\]](uayEgKDXGjaNURXqn7tQfQ "Use the glide.authenticate.session_access.mobile.refresh_token_interval property to govern the length of time that must elapse before a mobile device user will be forced to re-authenticate.")
* [Enable policy based session access for mobile \[New in Security Center 1.5\]](Yi~t3Ew7xi9kgc7XuF5M2Q "Use the The Zero Trust- Policy Based Session Access plugin to control if users authenticating through a mobile app will have their roles reduced.")
* [Prevent inactive users from logging in \[New in Security Center 1.5\]](YFkvRsWwFgEx0K9y7FDYGA "Configure this property to control if inactive users can authenticate on your instance.")
* [Configure event management assignment group admin roles \[New in Security Center 1.5\]](uUh6L8IwRXCAfFs6F~4BQA "Use the evt_mgmt.connector_assignment_group_admin_roles property to set which roles are authorized for admin access over the assignment group field in connector instances.")
* [Enforce Security Scope for Agent Workspace for HR Case Management \[New in Security Center 1.5 and updated in 2.0\]](2W38CCzVRn8P~qKu_nfVHw "Configure the Agent Workspace for HR Case Management plugin so that data in scope master tables can only be accessed by users with the correct permissions, enforcing the principle of least privilege.")
* [Enforce security scope license and permit playbook \[New in Security Center 1.5 and updated in 2.0\]](bLQVEdxrBCLn5Mn~49WV1A "Use this property to determine if only the access control lists (ACLs) within the License and Permit plugin will be used in determining access to the scope, or if ACLs from all scopes will be considered.")
{#new-hardening-settings-for-baseline-four__ul_qtt_q55_zyb}

