To ensure that questions get required attention from community members and are NOT left unanswered, it’s important for the author to indicate (by selecting “Yes” or “No” when prompted) whether the question was answered. (newly added) Please note that it is also important to respond to EACH comment your question receives. Your Yes or No response ensures an accurate status for your question.
For more information, please refer to this announcement explaining best practices for getting answers to questions.
For more information, please refer to this announcement explaining best practices for getting answers to questions.
Identity and Access Management
Discussion List
- 
             How do we seamlessly direct users to different IdPs based on Network Perimeter?Summary: We are trying to segregate out user community - internal users to use EntraID for authentication, and External suppliers to use Azure AD B2C. I have set up Sign… How do we seamlessly direct users to different IdPs based on Network Perimeter?Summary: We are trying to segregate out user community - internal users to use EntraID for authentication, and External suppliers to use Azure AD B2C. I have set up Sign…
- 
             How do I retrieve customer secret key created using identitydomains Python SDKI have Python code that generates a customer secret key for the current user. This uses the following steps: 1. Creates an identity domain client using oci.identity_doma… How do I retrieve customer secret key created using identitydomains Python SDKI have Python code that generates a customer secret key for the current user. This uses the following steps: 1. Creates an identity domain client using oci.identity_doma…
- 
            Is there a OCI IAM Rest API to retrieve all the Administrators and their access?Summary: Due to SOX we are looking to automate the user listings we must provide for our administrators. Is there an OCI IAM Rest API we can use, to list all our adminis…
- 
             IDCS Compatibility on Oracle AppsSummary: Hello Team, Currently we are using multiple Oracle apps as below. We want to know IDCS dependency on these apps. Apps: Oracle Fusion, CPQ, OAC, FDI, EPM, EDM, I… IDCS Compatibility on Oracle AppsSummary: Hello Team, Currently we are using multiple Oracle apps as below. We want to know IDCS dependency on these apps. Apps: Oracle Fusion, CPQ, OAC, FDI, EPM, EDM, I…
- 
             Does OCI administrator role cover the privilege for IDCS administrator role ?Previously, when we have a separate instance of IDCS and OCI. IDCS administrator role and OCI administrator role are separate. After that, IDCS has been merged to Identi… Does OCI administrator role cover the privilege for IDCS administrator role ?Previously, when we have a separate instance of IDCS and OCI. IDCS administrator role and OCI administrator role are separate. After that, IDCS has been merged to Identi…
- 
             I need to terminate employees immediatelySummary: I need to terminate employees immediately, but after this action (Termination), the employee should be notified and have access to the system for example, 3 day… I need to terminate employees immediatelySummary: I need to terminate employees immediately, but after this action (Termination), the employee should be notified and have access to the system for example, 3 day…
- 
             Unable to create Master Encryption Key for client provided RSA 4096 bit KeySummary: Hi Team, I am trying to create a master encryption key with Software mode and I have to import an external key. I have a 4096 RSA private key and Client certifi… Unable to create Master Encryption Key for client provided RSA 4096 bit KeySummary: Hi Team, I am trying to create a master encryption key with Software mode and I have to import an external key. I have a 4096 RSA private key and Client certifi…
- 
            Oracle OCI Tenancy to block usersHello Team, I am facing different issue. I have got access to OCI console with admin rights. When i tried to login to console, it is giving below error after i selected …
- 
             Supplier Role Deprovisioningwe are deprovisioning a role to our existing supplier users and preventing this role to be defaulted to new supplier usersand preventing this role to be defaulted to new… Supplier Role Deprovisioningwe are deprovisioning a role to our existing supplier users and preventing this role to be defaulted to new supplier usersand preventing this role to be defaulted to new…
- 
             OCI IAM domain upgrade error when upgrading Free to Oracle Apps PremiumSummary: Hello Folks, I am on OCI GEN3 and been trying to upgrade our Free OCI domain to Oracle Apps Premium but getting the error – ‘Authorization failed or requested r… OCI IAM domain upgrade error when upgrading Free to Oracle Apps PremiumSummary: Hello Folks, I am on OCI GEN3 and been trying to upgrade our Free OCI domain to Oracle Apps Premium but getting the error – ‘Authorization failed or requested r…
- 
             OracleIdentityCloudService Sign-on policy denies accessSummary: "OracleIdentityCloudService Sign-on policy denies access" after I modified sign-on policy mistakenly (I am the only admin) Content (please ensure you mask any c… OracleIdentityCloudService Sign-on policy denies accessSummary: "OracleIdentityCloudService Sign-on policy denies access" after I modified sign-on policy mistakenly (I am the only admin) Content (please ensure you mask any c…
- 
             How do I disable Oracle MFA if users are authenticated by a third party identity provider?I added Microsoft Entra (fka AzureAD) as a third party entity provider and users are now able to sign in using this. But users are still prompted for Oracle MFA and we w… How do I disable Oracle MFA if users are authenticated by a third party identity provider?I added Microsoft Entra (fka AzureAD) as a third party entity provider and users are now able to sign in using this. But users are still prompted for Oracle MFA and we w…
- 
             Tenancy deletionHI, I'm on the free tier and thought that deleting my tenancy would allow me to create a new once in a different location. I quickly found out that that was not the case… Tenancy deletionHI, I'm on the free tier and thought that deleting my tenancy would allow me to create a new once in a different location. I quickly found out that that was not the case…
- 
             Tenancy and account deletion issuesSummary: I request to have my tennancy deleted in early March. I thought this was how yoh changed regions like another service I use. Now that I understand, it's been ne… Tenancy and account deletion issuesSummary: I request to have my tennancy deleted in early March. I thought this was how yoh changed regions like another service I use. Now that I understand, it's been ne…
- 
             Authorizations in OCI App Gateway not workingSummary: We have been doing some testing of/with the OCI App Gateway, but we are not able to get authorizations/SSO configuration working. Content (please ensure you mas… Authorizations in OCI App Gateway not workingSummary: We have been doing some testing of/with the OCI App Gateway, but we are not able to get authorizations/SSO configuration working. Content (please ensure you mas…
- 
             Support for dual certificates in HCM API authenticationSummary: HCM supports dual certificates in the single sign-on SAML for identity providers, but it appears that there is not a way to support dual certificates for the in… Support for dual certificates in HCM API authenticationSummary: HCM supports dual certificates in the single sign-on SAML for identity providers, but it appears that there is not a way to support dual certificates for the in…
- 
             Malware/Virus Scan for documents uploaded in UCM from External SourceSummary: Is there any Oracle Solution that deals with the documents scanning for uploaded documents from external system to Oracle UCM Cloud for virus/malware scanning. … Malware/Virus Scan for documents uploaded in UCM from External SourceSummary: Is there any Oracle Solution that deals with the documents scanning for uploaded documents from external system to Oracle UCM Cloud for virus/malware scanning. …
- 
             Enterprise application - Application URLSummary: I've created an "Enterprise Application" so users can be redirected to my app built with vbcs. Users sign in using sign-page provided by Oracle. When app is sho… Enterprise application - Application URLSummary: I've created an "Enterprise Application" so users can be redirected to my app built with vbcs. Users sign in using sign-page provided by Oracle. When app is sho…
- 
             Export out list of reports/book from FR and ReportSummary: how would we export out the list of reports/book from reports and from finance reporting? Content (please ensure you mask any confidential information): Version… Export out list of reports/book from FR and ReportSummary: how would we export out the list of reports/book from reports and from finance reporting? Content (please ensure you mask any confidential information): Version…
- 
             Is there a way to default IDCS domain in OCI login screen?Summary: At present, our tenant has several IDCS domains set up. As a result, users must select the correct domain when logging into our Oracle Cloud account. To minimiz… Is there a way to default IDCS domain in OCI login screen?Summary: At present, our tenant has several IDCS domains set up. As a result, users must select the correct domain when logging into our Oracle Cloud account. To minimiz…
- 
             Can REST API "/oauth2/v1/userlogout" logout from SSO session SAML authenticated?Background: I am working on SSO integration between IAM (as SP) and Okta (as IDP) that is a customer authentication platform, using the SAML protocol. Requirement: Custo… Can REST API "/oauth2/v1/userlogout" logout from SSO session SAML authenticated?Background: I am working on SSO integration between IAM (as SP) and Okta (as IDP) that is a customer authentication platform, using the SAML protocol. Requirement: Custo…
- 
             "Social" / OIDC IdP secret not hidden in GUISummary: "Social" / OIDC IdP secret not hidden in GUI Content (please ensure you mask any confidential information): When I want to view config for an existing "Social" … "Social" / OIDC IdP secret not hidden in GUISummary: "Social" / OIDC IdP secret not hidden in GUI Content (please ensure you mask any confidential information): When I want to view config for an existing "Social" …
- 
             Delete privilege from custom roleHi, When launching the Usage metrics drill through report, I saw that a too much users were using the subscription for "Oracle Fusion Procurement Cloud Service - Hosted … Delete privilege from custom roleHi, When launching the Usage metrics drill through report, I saw that a too much users were using the subscription for "Oracle Fusion Procurement Cloud Service - Hosted …
- 
            Role that provides least privilege to access compliance documentsLooking for the role that will provide access to access compliance documents (SOC, etc.) but as little else as possible. I cannot seem to find this noted in the document…
- 
             Which setup is needed in the IDCS for the users to acces/edit all the tenancies and related apps?Hello, The customer’s team has requested an extension of their access level from view-only to full access for some users (all the tenancy and related apps). Based on the… Which setup is needed in the IDCS for the users to acces/edit all the tenancies and related apps?Hello, The customer’s team has requested an extension of their access level from view-only to full access for some users (all the tenancy and related apps). Based on the…
- 
             Recommended architecture for establishing Print Server in DMZ for Oracle fusionRecommended architecture for establishing Print Server in DMZ for Oracle fusion. Print from Oracle Fusion over the public Internet to an on-premise printer or print serv… Recommended architecture for establishing Print Server in DMZ for Oracle fusionRecommended architecture for establishing Print Server in DMZ for Oracle fusion. Print from Oracle Fusion over the public Internet to an on-premise printer or print serv…
- 
             Configure SSO for Customer Self-Service Portal with a third party applicationSummary: Our customer is an University. As soon as a student signs their contract, an account is created on a third party application that holds information regarding al…Cristian Rogelio Velasco Gutiérrez 81 views 5 comments 1 point Most recent by Radhika Abhyankar-Support-Oracle Configure SSO for Customer Self-Service Portal with a third party applicationSummary: Our customer is an University. As soon as a student signs their contract, an account is created on a third party application that holds information regarding al…Cristian Rogelio Velasco Gutiérrez 81 views 5 comments 1 point Most recent by Radhika Abhyankar-Support-Oracle
- 
             login.oraclecloud.com certificate expirationCurrently the certificates for login.oraclecloud.com to be used for SAML SSO authentication have a valid period of 10 years. Is it possible to have new certificates issu… login.oraclecloud.com certificate expirationCurrently the certificates for login.oraclecloud.com to be used for SAML SSO authentication have a valid period of 10 years. Is it possible to have new certificates issu…
- 
             How to allow a not-administrator user to generate bypass code for other users in OCI??Hi, i have a requirement to allow a non-administrator user to generate bypass code for others users I've created a policy to allow this user to manage other users and gr… How to allow a not-administrator user to generate bypass code for other users in OCI??Hi, i have a requirement to allow a non-administrator user to generate bypass code for others users I've created a policy to allow this user to manage other users and gr…
- 
             How to add multiple family resources in one single policy to a groupSummary: I tried different ways to add multiple family resources to one group but it is not working. Can some please help? For example Allow group ServiceAdministrator t… How to add multiple family resources in one single policy to a groupSummary: I tried different ways to add multiple family resources to one group but it is not working. Can some please help? For example Allow group ServiceAdministrator t…