Oracle Transactional Business Intelligence Idea Lab

Welcome to the Oracle Analytics Community: Please complete your User Profile and upload your Profile Picture

FUSION ERP ROLES ASSIGNMENT TO USERS VIA IDCS

1
Views
0
Comments
User_3IWJY
User_3IWJY Rank 1 - Community Starter

Organization Name

NatWest Group

Description

In on-premise world, Oracle provided full integrated solution of ERP apps via IAM along with other middleware apps which made IAM suite as one stop solution for all identity and access management requirements. 

As IDCS replacing on premise IAM system ,We need similar kind of set up where ERP Role Management(Role assign/revoke) should make possible via IDCS eventually it makes  IDCS as centralised controlling access system for all IAAS/PAAS/SAAS applications.

 

 

Use Case and Business Need

With current limitation we couldn't able to assign/revoke SAAS roles from IDCS as like how we did it for IAAS/PAAS applications.

How it matters?

1. Assume most of organisations connect to AD from IDCS for Authentication,by this means we can sync roles/users from AD to IDCS which enables centralised monitoring at AD to revoke/assign groups to any users and those should get reflect immediately in IDCS. With current limitation one should login to IDCS to assign PAAS roles and to Fusion SAAS instances to assign fusion roles .

Example : We use centralised SLX tool where Business users empower to select AD group available  and upon approvals ,role assignment happens to respective  to system/applications automatically .With the current limitation,above approach woks for IAAS/PAAS applications roles but not for SAAS application's roles.

2.To Bring IDCS as centralised access management system for all 3 types of platforms.

 

 

Original Idea Number: 27e4c926b9

1
1 votes

Submitted · Last Updated