To ensure that questions get required attention from community members and are NOT left unanswered, it’s important for the author to indicate (by selecting “Yes” or “No” when prompted) whether the question was answered. (newly added) Please note that it is also important to respond to EACH comment your question receives. Your Yes or No response ensures an accurate status for your question.
For more information, please refer to this announcement explaining best practices for getting answers to questions.
For more information, please refer to this announcement explaining best practices for getting answers to questions.
Applications Security
Discussion List
-
Remove OTP from Oracle HCM Cloud Fusion Login PageOur instance is selected for security reinforcement things, one of them is Oracle HCM Cloud login page. The problem is not all of our users are required OTP because not … -
With the new OCI Login pages what do we use as the url for Login Audit Rest API urlSummary: With the Oracle changes for the Oracle Cloud HCM login pages moving to OCI login pages, what do we use as the api for Login Audit Rest API url? Example: Before:… -
Disabling MFASummary: Hi Team, How can we disable MFA for an user as a Admin? Please advise Regards, Harini Sairam Version (include the version you are using, if applicable): 25B -
Will Run Diagnostics Tests expose sensitive accessSummary: While exploring Run Diagnostics Test page I was curious to know if it will expose to sensitive data like payroll details etc. Because few of the runs that i saw… -
Requesting to find user accessed rolesHi Team, Good Day!! Kindly provide the SQL/solution to find user accessed roles in Oracle fusion cloud. This is required for Audit purpose. -
Security access issue in compensation infoHi Team, Currently we implemented the security in compensation page by creating custom Abstract role,but there is old application URL is causing the issue security is fa… -
Why can we not see the "Two-Factor Authentication" tile when configuring User Category?We are trying to enable Two-Factor Authentication in our fusion environment; however, we are not seeing the "Two-Factor Authentication" tile when confiruing User Categor… -
What does NO DATA AVAILABLE mean in the User and Role Access Audit report?Summary: We are required to run the User and Role Access Audit every quarter and there are users who appear on the report with 'NO DATA AVAILABLE' in the Policy Stripe, … -
view only privilege for common and standard lookup using RESTWe use below API's inside our Visual builder studio and we are using oracle cloud account as security for FSCM connection. API- 1: fscmRestApi/resources/11.13.18.05/comm… -
Is there any audit report that may show who has access to which OTBI folder?We are using HCM module and under OTBI custom folders we would like to see who has access to which OTBI folder. Is there any audit report for this. Please assist. -
Need artifact of how logs are protected and who has the admin access of these logNeed artifact of how logs are protected and who has the admin access of these logs, system operator activities should be logged and logs should be protected. We have to … -
What is the seeded role or privilege that allows HCM existing absences to be viewed in Redwood?Version: 25B Navigation: My Client Groups | Absences | Absence and Entitlements. We users cannot see existing absence balances on the Redwood Absence and Entitlements pa… -
Report to show status of scheduled processesSummary: We have an audit requirement to show evidence of scheduled processes, is there an OTBI report that shows the status of scheduled processes, or is this something… -
Provide necessary roles or privileges required for ERP Integration Oracle Financials REST APIHello Oracle Community, I’m currently working on an integration with Oracle Financials Cloud using the following REST API endpoint (REST API for Oracle Fusion Cloud Fina… -
how to implement Oracle E-Business Suite Data Retention on OCISummary: With this exciting offering, you can rest easy knowing that your data retention for EBS needs are addressed and continue to have secure access to the EBS data w… -
Enable edit of user role membership option from Administration missing on 25BSummary: Enable edit of user role membership option from Administration missing on 25B. We want to Hide Add user from edit role tab and Page composer customization is no… -
If unchecking "Enable Choose Login Page" box will impact Other Activies?Summary: To provide audit evidence that users are logging in via Okta SSO, we plan to disable the “Enable Chooser Login Page” option. Following the Redwood update, the I… -
EDI Reports Role created but not in the per_roles_dn tableSummary: Our auditors are reviewing the roles that we have in Fusion. They have queried what the "EDI Reports" role, code "_GRP2ROLE_EDI Reports" is, and why it is assig… -
I need a report of users that make the access in cloud oracleI know how many users I have in the system but I need also to know how many users have actually accessed the system. Someone can help me to extract that data? -
Restrict access from 3rd party SQL tool to query PER_ASSIGNMENT_EXTRA_INFO_M HCM TableSummary: Hi All, We've a requirement to restrict access to data store in PER_ASSIGNMENT_EXTRA_INFO_M HCM Table from 3rd party SQL tool that basically runs a Sql query vi… -
Request for authentication flow clarification and feasibility of enabling Two-Factor AuthenticationUser Authentication in Oracle SAAS Query: We need to understand the current user authentication mechanism in the SAAS environment. We understand that work is currently u…
-
Impact of SSO Username ChangeHi Team, We are planning to change the SSO username from existing email id to custom id. We would like to know the impact of changing the Username since we are already l… -
No values in drop down menu for ESS Job: Open Project Accounting PeriodI am trying to test the functionality of ESS job = Open Project Accounting Period. However, the are no available values for me to select for the Business Unit parameter … -
Where is the Act As This Role preference for Service Administrators?According to this article https://docs.oracle.com/en/cloud/saas/readiness/epm/2025/epm-mar25/25mar-epm-wn-f37500.htm as of the March 2025 update in ARCS I should have av… -
How does it affect the underlying roles if Inherited Role is updated/modifiedHi All, Could you please help me understand if any changes made to the Inherited Role would adversely affect all the underlying roles in that case? What is the common pr… -
Large number of role auto provisioning rules configuration would cause any performance impact?we have a business requirement to create around 2000 auto provisioned rules to assigned roles to users based on position parameter. Please let me know if it will cause a… -
How to find which Report Catalog folders a given role gives access toI've been asked to find which Report Catalog folders a given custom role gives access to. How can I search for any grants of folder access (Read, Traverse, etc.) to a gi… -
OAuth for VBCS application integrationSummary: We are creating a custom VBCS application on PaSS and will like to integrate it with the backend Oracle Fusion ERP Application using REST APIs and OAuth authent… -
How to restrict the access to Oracle Fusion via VPN or AWS workspaceSummary: Hi team, We have Oracle fusion dev environment which is accessible on any open network without any restriction. So we want the restrict the access to users via … -
How we verify Oracle Fusion ERP control includ SOC2 report, Shared Res. Model, and DR site location?We are currently conducting a review of administrative and security controls for our Oracle Fusion ERP (SaaS) environment. As part of compliance with our national cybers…