Oracle Fusion Data Intelligence

Welcome to the Oracle Analytics Community: Please complete your User Profile and upload your Profile Picture

Efficient way to assign FDI licenses to Users

Accepted answer
13
Views
2
Comments

Hello All,

What is the most efficient approach to assigning FDI access to several thousand users, given the complexity of our role structure? The main challenge lies in the fact that we use 'Custom Roles' which must be mapped to 'Application Roles'. Additionally, each user may be associated with multiple custom roles, making the assignment process non-trivial."

thanks,

Tagged:

Best Answer

  • JohnW-Oracle
    JohnW-Oracle Rank 7 - Analytics Coach
    Answer ✓

    Hello @Sawrub,

    Hopefully, you have SSO enabled and you have setup the sync between FDI and FA. That is the most important factor in efficiently managing user security. However, some setup remains and you would need to create job-specific Group in FDI. Users would be assigned to these groups. The Groups are made up of Application roles which consist of duty and data roles. You can assign the license application roles to your custom groups if required.

    If each user requires a unique combination of custom roles, you may end up with a lot of Groups.

    The documentation on this is here:

    https://docs.oracle.com/en/cloud/saas/analytics/25r3/fawag/manage-users-groups-application-roles-data-access.html

    Hope that helps.

    Regards,

    John

Answers

  • Soonam
    Soonam Rank 3 - Community Apprentice

    Hi JohnW,

    Thanks for explaining it nicely.

    I have some questions related to the access, that is given through the default configuration.

    Based on this this guideline, a system group now controls the login and also the specific application roles for duty and data. My question is if a system role is given to a user does it mean by default he/she will be able to access all the subject areas. Eg. FAW Licensed ERP Author, the system role is an Author and by default there will be many application role attached to it. Once one user is added to this group in OCI, the user will be able to login to FDI with SSO and will also be able to see the subject areas.

    Will not that be a concern? Because by default the user will be able to see everything in ERP(with the default application roles attached to FAW Licensed ERP Author).

    One more question is does Fusion role also has direct impact on FDI data access?

    System Groups

    Regards,

    Soonam