Oracle Fusion Data Intelligence

Welcome to the Oracle Analytics Community: Please complete your User Profile and upload your Profile Picture

Create an Integrated Oracle FDI with Fusion App - SSO requirement

Accepted answer
121
Views
3
Comments
DavidZhang
DavidZhang Rank 1 - Community Starter

In Administering Oracle Fusion Data Intelligence 24R4 document, it has below statement:

When you create an Oracle Fusion Data Intelligence instance using the Integrations option in Oracle Fusion Cloud Applications, you automatically get:

• The users, groups, and roles from Oracle Fusion Cloud Applications. Also, you don’t have to set up how users from Oracle Fusion Cloud Applications access Oracle Fusion Data Intelligence using single sign-on, if single sign-on is already set up in Oracle Fusion Cloud Applications.

• OAuth authentication.

It suggests that we don't need to configure how Fusion App users SSO onto FDI, only if SSO has already setup in Fusion Apps already.

Is this the truth? (Does this mean that we need setup SSO for Fusion Apps first to skip SSO configuration steps for FDI provision

https://docs.oracle.com/en/cloud/saas/analytics/24r4/fawag/set-user-access-oracle-fusion-data-intelligence-using-single-sign.html#GUID-40C4868B-11FB-46CC-8785-14344EC91FD7 ?)

If this is true, the following question would be 'How we setup SSO in Fusion Apps if it is not configured yet'?

Thanks

David

Best Answer

  • Sumanth V -Oracle
    Sumanth V -Oracle Rank 8 - Analytics Strategist
    Answer ✓

    @DavidZhang -

    Yes, that's correct! An integrated Oracle Fusion Data Intelligence (FDI) instance will use the same cloud tenancy, identity domain, region, compartment, and instance type as the corresponding Oracle Fusion Cloud Applications instance.

    The authentication setup between Oracle Fusion Data Intelligence and Oracle Fusion Cloud Applications is configured using OAuth authentication exclusively.

    An integrated Oracle Fusion Data Intelligence instance is directly attached to your Oracle Fusion Cloud Applications service. This allows seamless usage of Oracle Fusion Cloud Applications resources, such as users, groups, and roles, within Oracle Fusion Data Intelligence.

    This integrated method is the highly recommended approach for creating your Oracle Fusion Data Intelligence instance, as it leverages OAuth authentication to automatically verify user permissions.

    Hope this clarifies. Thank you!

Answers

  • Sumanth V -Oracle
    Sumanth V -Oracle Rank 8 - Analytics Strategist

    @DavidZhang - Yes, that is correct.

    When you create an Oracle Fusion Data Intelligence (FDI) instance using the Integrations option in Oracle Fusion Cloud Applications, the following are automatically configured:

    1. Users, Groups, and Roles Sync → The existing users, groups, and roles from Oracle Fusion Cloud Applications are automatically available in FDI.
    2. SSO Not Required to Be Configured Separately → If SSO (Single Sign-On) is already set up in Oracle Fusion Cloud Applications, then no additional SSO configuration is needed for FDI.

    Hope this helps!

  • DavidZhang
    DavidZhang Rank 1 - Community Starter

    @Sumanth V -Oracle Thanks for clarification.

    I'd assume now Oracle cloud has deprecated IDCS, and move to IAM, by default all the Oracle Fusion Cloud applications have built-in IAM identity domain as the Service Provider (SP), and Federated SSO is configured by default as the Identity Provider (IdP) as well, therefore no additional SSO configuration is needed for integrated FDI instance provision method, right?

    Thanks

    David