Categories
- All Categories
- 70 Oracle Analytics News
- 6 Oracle Analytics Videos
- 13.9K Oracle Analytics Forums
- 5.2K Oracle Analytics Idea Labs
- Oracle Analytics User Groups
- 38 Oracle Analytics Trainings
- 56 Oracle Analytics Data Visualizations
- 2 Oracle Analytics Data Visualizations Challenge
- 2 Oracle Analytics Career
- 4 Oracle Analytics Industry
- Find Partners
- For Partners
Reg. Access Privilege to New User in OBIEE 11g
Hi all,
We have OBIEE 11.1.1.1.9 installed and in the process of creation of new groups and users.
I followed the below steps for creation
1) A new user (ABC) is created in Weblogic Administration Console.
2) A new group (RetailUsers) is created in Weblogic Administration Console and assigned to BI Consumers Group.
3) The newly created user is linked to above group.
4) A new Application Role (RetailUser) is created in weblogic EM Console
5) The group (RetailUsers) is added as a member to the role - RetailUser
6) Moved to the application deployment path and restarted OPMN.
7) Repository is opened in online mode and selected Manage -> Identity -> Identity Management -> BI Repository
8) Users and Application Roles section are not reflecting the new Application Roles created above.
Also, please note that, I have not touched Application Policies in the process.
Please let me know if anything else has to be done. Also, I am ready to share any additional information.
Regards
Prasanna
Answers
-
Hi Prasanna,
Please find the below steps
Open repository in online mode->Go to Action-> Click on Synchronize Application Roles-> see you can able to see you application role
Regards,
Sree
0 -
Hi Sree,
I have done "Synchronize Application Roles". But no luck.
I could see only default Application Roles "BIAdministrator, BIAuthor and BIConsumer" and the one created in migration "BIAdministrators".
Regards
Prasanna
0 -
So You are not able to see that application role in your RPD? even after done the synchronization....Just login with those users in analytics and check go to user my account check roles and catalog group check your application role is available or not..
0 -
Hi,
I was able to login with the new user. But noted that, I was able to view all the folders under Shared Folders. And by default, was having the access to Dashboards.
How can I restrict that?
Also, I could see the new Role in the Manage Privileges section.
0 -
Ok. what exactly you want to restrict. If you want to restrict reports, dashboards, folder..etc..either you can restrict through catalog manager or you can restrict directly in the front end.
0 -
Hi,
Thanx for the quick response.
My question is, on creation of new user/group and application role, how did I get the complete access to the answers.
I wanted to grant accesses on request basis to various folders and Subject areas.
Regards
Prasanna
0 -
You will have a default roles based on that...if you wan to give the access in the subject are level then in the RPD presentation layer you can give the permisions
1) Subject Areal level
2) Presentation Table level
3) Presentation Column level
4) Hierachy level
That you can restrict in the RPD.
Thanks!!!
0 -
Are you running on a cluster ?
To check on the permissions for Answers click on the Advanced Link at the top right then Security - Manage Privileges then look at what has been set up for Access - Access to Answers, by default I believe this should only be set to BI Administrator Role and BI Author Role
If you want to see what permissions are currently set on the subject area then in the RPD Admin tool right click on the subject area/folder and select Permission Report also to set permissions select Properties then click on the Permissions button and set the required permissions
Richard Chan
Neodata Australia
0 -
Hi Richard,
I have create a user (RBDUser) and associated it to a new Group (RBDGroup). Just by the creation of user, I am able to access BI Presentation Services with access to Shared Folders.
I haven't even associated it with any application role.
What could be wrong in this?
Regards
Prasanna
0 -
Hello Prasanna,
Please, dont forget this (http://docs.oracle.com/cd/E23943_01/bi.1111/e10543/install.htm#BIESC793)
So you have to do something like this:
- BI Consumer Group , its a the father of all. And the child inherit all privileges.
Well, please, check this, If you want to create your "Application Role", please, first do this 3 steps:
1. Create you "RetailApplicationRole", go put inside "BI Consumers Group" 2. Create your user group "Retail Users Group" and put inside of "RetailApplicationRole" 3. Create your user "NewUser" put into "RetailUserGroups"
4. Go in online mode in your "Administration Tool", Manage->Identity-> Syncrhonize Application Roles
Note: Please ensure if there is any conflicts with the name of your "Application Roles", "Groups" or "users".
This works for me.
Kind Regards,
César Advincula
0