To ensure that questions get required attention from community members and are NOT left unanswered, it’s important for the author to indicate (by selecting “Yes” or “No” when prompted) whether the question was answered. (newly added) Please note that it is also important to respond to EACH comment your question receives. Your Yes or No response ensures an accurate status for your question.
For more information, please refer to this announcement explaining best practices for getting answers to questions.
For more information, please refer to this announcement explaining best practices for getting answers to questions.
Applications Security
Discussion List
-
Need help on customizing Oracle HCM Sign in pageContent Hi Team, We need urgently to customize the Oracle HCM Sign In page for users. How can we achieve this? Is there any way to customize the Oracle HCM Sign in page?… -
Report showing when a user has had a role removed from their user accountContent When business users have roles assigned to their account for a period of time and then these roles are removed, we lose track of what they had access to from an … -
Moving the HCM Cloud to Europe after Schrems II?Summary US Privacy Shiled is invalid: Moving the HCM Cloud to Europe?Content Dear all The US Privacy Shield is not valid anymore after the decision of the Court of Justi… -
Reports does not show in RolesContent Dear , I created some reports but it does not shows in role when we want to add our created reports in roles. It does not show all reports in roles function secu… -
DOR attachment missing in UCMContent Hello - While searching for contentId in Content Server, we are unable to see any relevant documents related to Document of Records. We are able to see only thos… -
IP Whitelisting solution for SaaS apps with IDCS in placeSummary IP Whitelisting solution , IDCS and LBACContent For security point of view our customer wants to use IP Whitelisting. Thinking of this, we have IDCS for IP white… -
Remove BI Author role from ORA_FBI_PERFORMANCE_MANAGEMENT_TRANSACTION_ANALYSIS_DUTY_HCM duty in HCMSummary Remove BI Author role from ORA_FBI_PERFORMANCE_MANAGEMENT_TRANSACTION_ANALYSIS_DUTY_HCM duty in HCMContent As part of some customization to the VRT Employee role… -
Security Audit: Best way to show listing of privileges?Content Hi all, Auditors are requesting a complete list active security roles and their associated privileges. Is the Security Reference Manual (link below) the best way… -
Employee is getting error when try to access OTBI report from ESSSummary Employee is getting error when try to access OTBI report from ESSContent We created an OTBI Talent Rating Report for Employee, created a new tab next to 'Me' and… -
Ideas raised re: HCM Data Loader auditing - impacts on ERP/Purchasing Cloud tooSummary Weaknesses in auditing of high risk security changes performed via HCM Data LoaderContent A number of ideas have been raised around issues with HCM Data Loader a… -
Got this popup after submitting an idea todaySummary Interesting...Content It seems total votes don't count - only Unique Organization Vote Counts. At least according to this message. We have three ideas that have … -
Restore Roles and Data Access after Prod RefreshSummary Restore Roles and Data Access after Prod RefreshContent Hi- Can you please suggest the best way to restore the roles and data access in non prod instances after … -
Migration of custom roles from one pod to anotherContent Hi I just wanted to get feedback on people's experiences with Oracles migration tool. To date, we have been manually migrating new custom roles or changes to exi… -
IP record history for candidate activity in TBEContent We are seeking how to generate a report with log activity AND IP address of a candidate that logged into our TBE product (from 2018). We see the candidate logged… -
Breaking apart REST API abilitiesSummary Ad hoc working group to identify how to 'break apart' the REST API and log Ideas / ERs to do soContent Some of know that we have working group set up to identify… -
tokenrelay API and change user logged inContent Hi, The excellent note Update 20D: FscmRestApi Token Relay Service Fails With Error 401--Unauthorized In Web Browser (Doc ID 2728312.1) explains how to use "anti… -
DocumentTypeSecurityProfileSummary Need a sample hdl file for DocumentTypeSecurityProfileContent Hi, We are creating multiple document type security profile that has more include and exclude type … -
View Only BPM Task RoleSummary Creating a custom role for View only BPM TasksContent I would like to create a role that is view only so the user can see all of the transactions but cannot reas… -
Privilege for worker REST API not workingSummary Custom role using delivered documented privilege is not workingContent Problem: We are trying to use a REST API to pull personID for later use in Procurement Age… -
User Account becomes InactiveContent Hello experts, I am writing because I am observing a strange behavior in security console. Some user accounts get "inactive" and users cannot access the system, … -
How to identify Privileges whether it gives Read or Write PermissionSummary How to identify Privileges whether it gives Read or Write PermissionContent Hi, We have requirement where Client require details of Privileges and what they allo… -
How to allow the Social functionalityContent Hi all! I need to know what's the roles that i should assign to user. Ps. See attachment the image. Tks Eduardo
-
Bulk User Account Activation / De-ActivationSummary Need to find a NON-Rest API way to do this activityContent Need - Bulk Activation / De-Activation of User Accounts Justification - When environments are cloned, … -
Business wants to Company Logo in "Login Page" and need Alert to User to access Application throughSummary Business wants to Company Logo in "Login Page" and need Alert to User to access Application through Single-Sign-onContent Business wants to Company Logo in "Logi… -
Set default password in bulkContent Hello Experts in our Test Environment we would like to chage the password of all employees to a default value, or at least a default rule of ours. Can it be done… -
Set JWT Token expiration and RevokeContent Hi, I am using "anticsrf" and "tokenrelay" ReST APIs to get JWT token.. 1st Question: Token duration is defaulted to14400 seconds, is it possible to set a differ… -
Approvals on Role Assignment by IT Security ManagersSummary Approvals on Role Assignment by IT Security ManagersContent Other then Auditing options , can any one advise if we can have approvals while assignment of roles /… -
Segregation of Duties Software - Has anyone used or evaluated QSoftware Segregation of Duties in OraSummary Quick and easy Segregation of Duties (SOD) reportingContent Hello, We are currently reviewing Oracle's SOD Risk Management module, but the cost may be beyond our… -
User Login and Module Accessed ReportSummary Report that displays when a user logged in and what modules/screens they accessed.Content Hi Community, Our auditors are looking for a report that shows when a u… -
Password Reset for employees without work emailContent We have hourly employees without work email and it has become a challenge with password reset. When emp is hired we manually reset their password and communicate…