Categories
Restricting JDBC Data source to few application roles

HI All,
In OAC BI publisher we want to restrict JDBC Data source to few application roles. I did ( in JDBC security section - Available Roles list to the Allowed Roles list ) . but not able to make it work.. still all the admins and developers able to see the Data source though they are not part of new application role which is allowed.
Any document on what steps to follow for this please.
More details below:
I have a schema in oracle DB, which contains secure data, we want only set of developer have access to create BIP data source, data model and BIP report and around 30 users access and view data.
we like to restrict the access for this schema.
I want to create a App role (users /groups added) .. login with any specific user of this app role → create connection JDBC data source
and select few required app roles as "Allowed Roles".
when any other admin / Developers (who are not part of the "Allowed Roles") logins they should not be able to create data model using this particular schema.
Note:—We already have developers who created reports using another schema in OAC BIP. these developers must not see the restricted schema data / reports.
Oracle DB (ADW) and OAC are the environment details…
I tried below steps but still everyone able to create data model using restricted schema.
steps:
In IDCS — Created a group and Add user to Group.
Created OAC Custom Application Role.
Added IDCS Group to an Application Role as Member.
Added Custom Application Roles to the BI Service Administrator (Pre-Defined) Application Role Membership.
connected to BIP using new app role user and created Datasource and added app roles as "Allowed Roles".
———
Still when any other user (who are not part of allowed Roles ) signed are able to create Data model using data source.
Please suggest what I'm missing here.
TIA…
Best Answer
-
this issue is resolved now, other custom role we created were similar to BIContent Author, later I noticed BI content Author was already added to the Datasource, hence the issue..
1
Answers
-
Hi @VijayDC
Reg. below statement/quesiton?
Still when any other user (who are not part of allowed Roles ) signed are able to create Data model using data source.
what are the roles/groups assigned to any other user?
Regards,
Arjun
0 -
1