9 Replies Latest reply on Oct 16, 2015 1:18 PM by Thomas Dodds

    Users Groups and Roles

    user12233622

      Hi,

      I need to understand how to manage the security of OBIEE (11.1.1.5) the situation below:

      Suppose we have LDAP-production:
      - User1 belongs to the Office1 and belongs to Role1 (enabled Dashboard1 and Dashboard2)
      - User2 belongs to the Office1 and belongs to Role2 (enabled Dashboard2)
      - User3 belongs to the Office2 and belongs to Role2 (enabled Dashboard2)
      - User4 belongs to the Office2 and belongs to Role3 (enabled Dashboard3)

      WebLogic is configured with LDAP production:
      - User1 belongs to Role1
      - User2 belongs to Role2
      - User3 belongs to Role2
      - User4 belongs to Role3

      On Enterprise Manager I defined 3 ApplicationRoles and I mapped the Roles on LDAP matching:
      - ApplRole1 -> Role1
      - ApplRole2 -> Role2
      - ApplRole3 -> Role3

      So:
      - (User1) belonging to            ApplRole1 -> Role1 -> on OBIEE catalog are enabled folder Dashboard1 and Dashboard2
      - (User2, User3) belonging to ApplRole2 -> Role2 -> on OBIEE catalog are enabled folder Dashboard2
      - (User4) belonging to           ApplRole3 -> Role 3 -> on OBIEE catalog are enabled folder Dashboard3

      But now I need to create a Shared Folder on the OBIEE catalog for each office:
      User1 and User2 -> Office1
      User3 and User4 -> Office2

      How do I map users directly through LDAP without having to indicate one by one ( I have
      thousands of users!!)

      Thanks!!