With federation access groups, you can separate sensitive global entitlements and delegate the administration of those global entitlements to a limited set of users. Setting up federation access groups is optional.

Federation access groups are available only in a Cloud Pod Architecture environment.