To ensure that questions get required attention from community members and are NOT left unanswered, it’s important for the author to indicate (by selecting “Yes” or “No” when prompted) whether the question was answered. (newly added) Please note that it is also important to respond to EACH comment your question receives. Your Yes or No response ensures an accurate status for your question.
For more information, please refer to this announcement explaining best practices for getting answers to questions.
For more information, please refer to this announcement explaining best practices for getting answers to questions.
Applications Security
Discussion List
-
List of all ESS jobs and the privileges associated with itSummary: Is there a report/query which we can use to get a list of all the ESS jobs, and the privileges/duties/Aggregate Privileges that will grant access to running the… -
What is the retention period for the Oracle ERP cloud audit logsSummary: Just want to ask what is the retention period for the audit logs of Oracle ERP cloud? Is there a way to adjust the retention period? Any recommendation if a cli… -
For how long does Oracle retain the Audit logs generated on the SaaS Application Audit ObjectsSummary: For how long does Oracle retain the Audit logs generated on the SaaS Application Audit Objects Content (required):For how long does Oracle retain the Audit logs… -
Issue with access to 'My Client groups'Summary: Content (required): We have a job role as Human Resource Specialist, and a lot of data roles inheriting the job role. We are restricting the access to 'My Clien… -
How to gain access to UCM account scm/item/import for FBDI?Summary: Trying to follow Oracle's instructions to upload a Catalog file via FBDI, and they say that in File Import and Export we should select the account scm/item/impo… -
Password Expiry Report shows userCategory=null, even the user is in default user category.Summary: Password Expiry Report execution log shows userCategory=null, even the user is in default user category. Content (required): We have most of users under the Def… -
Inactivate Terminated UsersSummary: Inactivate terminated users Content (required): In the security console, I have noticed a substantial amount of active users who are terminated employees. Typic… -
Can we change the login attempts, session out time, and force user to change passwordSummary: For Oracle Fusion native password, Where can we change the following settings? Maximum login attempts before account is locked. how long of idle time triggers t… -
Okta to Fusion Scim User ProvisionSummary: Integrate Okta to Fusion SCIM User provision Content (required): Hi, We are trying to set up SCIM provisioning from Okta to Fusion. But we have found that Okta … -
Need help to fetch the roles with stream names and service detailsSummary: Need help to fetch the roles with stream names and service details Content (required): We have a requirement to develop a report to fetch all the roles along wi… -
Recommendations about multi-domain security handlingSummary: Recommendations about multi-domain security handling Content (required): Hi All, Greetings! With respect to handling the security in multi-domain implementation… -
Oracle notifications - Reply actionsHello All What happens if users reply for any Oracle notifications ? I am not talking about the approve or reject actions in the notifications but a general reply to an … -
Purpose of Human Capital Management Folder Reporting Duty role in HCMFriends, What is the purpose of having the Human Capital Management Folder Reporting Duty role. It's not assigned to any of the HCM seeded roles. I'm aware it grants acc… -
HCM Cloud access - solution for Hourly employees without AD accountSummary: Is there anyone using IDCS or Identity Domain as second IDP for HCM Cloud - along with Microsoft Azure (SSO) first IDP? We are deploying a solution where our ho… -
Create role to manage LocationsSummary: We need to create a role to manage only Locations. No other Workforce Structure should be available to this role. Content (required): We need to create a role t… -
Privilege required to run the API 'crmRestApi/resources/11.13.18.05/countryCodes'Summary: Need specific privilege to run the API crmRestApi/resources/11.13.18.05/countryCodes. Content (required): It works with Application Implementation Consultant, b… -
Is it possible to use the Oracle Public Certificate for inbound API authenticationSummary: We are using a JWT token to authenticate REST API calls to HCM. Currently we generate our own key pair and register the public certificate in the API Authentica… -
For the provision of security context maps, can DFF be enabled as for role maps?Summary: In the creation of the data security context maps, could the same DFF be used as for the role maps? Content (required): In 22A a new feature was delivered for r… -
Fusion - Locked Accounts - Any report which can show why a user account is locked outSummary: Fusion - Locked Accounts - Any report which can show why a user account is locked out Content (required): Version (include the version you are using, if applica… -
How to disable forgot password for employees?We have a requirement to disable forgot password option for employees. I had a look at the privileges and security policies and found that 'PER_RESET_PASSWORD_PRIV' is p… -
We need Role create orupdate reportSummary: For Audit Department we need a standard report with information about role date create or update Content (required): Role code, Role name, creation date, update… -
Creation of user accountsIs there any way to create user accounts and assign their roles in via a tool a like FBDI or anyway other way to load the users in bulk in Oracle Fusion Cloud Version (i… -
Is it possible to delegate approvals without role delegation?Summary: Delegate approvals independently, without delegating roles Content (required): Dear Community, I am currently working on the setup of the approval delegation fu… -
Is Role Delegation all or nothing?Summary: We have a small number of roles that we have enabled delegation of. The question has come up if there is a way to delegate most of the role function except the … -
Is there a way to automatically remove a role after a defined period of timeFor ERP Production, our Developers are only allowed access for a defined period of time to execute a change. Currently we are manually adding and removing those roles. I… -
How to use the /fscmRestApi/tokenrelay apiSummary: How to generate JWT in POSTMAN Content (required): In order to generate JWT token i tried using /fscmRestApi/tokenrelay api in POSTMAN. But I am getting 401 una… -
Is there a record of User and Roles for terminated users?Summary: We often use the Users and Roles search function to review the history of roles that have been assigned or removed from a user, to see when and by whom. This ac… -
To migrate users and roles from One POD to other using payloadSummary: Is there any way to export users from one instance and migrate them and assign them bulk roles. Content (required): If the person number is missing. We are look… -
Line Manager having My Clients Group AccessSummary: Hi I recently observed that in Line Manager seeded role there is My Clients Group Access Tab is visible. I tried to find out the roles and privileges which are … -
Send a test notificationSummary: Looking for a way to send myself a notification after making an update to be sure the changes look accurate. Navigating from Security Console > User Categories.…