Oracle Fusion AI Data Platform Forum

Welcome to the Oracle Analytics Community: Please complete your User Profile and upload your Profile Picture

Integrated Oracle FDI with Fusion App - SSO

Received Response
22
Views
1
Comments

How is Oracle FDI which is created in the same identity domain as Fusion ERP utilize SSO from ERP ?

I have read multiple Oracle documentations where it says FDI automatically inherits the existing SSO configuration from ERP, but want to understand how is this happening behind the scenes?

We haven't received IAM Upgrade yet so SSO configuration is setup in Security Console of our ERP application, how is ERP Application SSO config interacting with IDCS and getting shared with FDI to enable SP initiated SSO for end users in FDI ?

Also, in IDCS ERP domain, we see 2 FDI applications under Oracle Cloud Services, what exactly are these applications for ?

Application name format :

ANALYTICSAPP_FAW (IDCS application for ANALYTICSAPP)

ANALYTICSINST_oax (Application for ANALYTICSINST)

Thank you in advance!

Sarthak

Answers

  • Daniel Ryan
    Daniel Ryan Rank 5 - Community Champion

    Hi @Sarthak Dhingra

    The users will automatically inherit all the job roles they have in Fusion. As part of the configuration, there is an option for ERP Security Configurations. This brings through all the data access sets for data security.

    If you use the out of the box job roles in Fusion, they all have FAIDP Application Roles assigned to them. If you use custom job roles, you will need to do a one-off mapping of job role to applciation role in the FAIDP Console under the security tab.

    It is important that you ensure each job role has all 3 application role types (4 options) to correctly secure the application:

    • Licensed Role - FAIDP Access
    • Data Role - Data Security
    • Analysis Duty - Subject Area/Column Access
    • Content Duty - Catalog Folder access.

    Hope this helps.