Manage Groups
You must ensure to map application roles to groups and add user memberships to groups. This enables users to access the applicable objects and data in Oracle Fusion Analytics Warehouse and perform various tasks.
Topics:
- Create a Group
- Remove a Group
- Add Application Roles to a Group
- Copy Application Roles to a Group
- Remove Application Roles from a Group
- Create an Application Role While Mapping
- Assign Users to a Group
- Upload and Download User Group Mappings
- Remove Users from a Group
- Copy User Mappings to a Group
- Enable Easy Data Access to People Leaders
Create a Group
As a security administrator, you can create custom groups to meet your business requirements.
- If you created custom groups in Oracle Fusion Cloud Applications, then you can synchronize them into the Oracle Identity Cloud Service instance associated with your Oracle Fusion Analytics Warehouse instance and thereby make them available in Oracle Fusion Analytics Warehouse.
- You can create them manually in the Oracle Identity Cloud Service instance associated with your Oracle Fusion Analytics Warehouse instance using the Security pages in Oracle Fusion Analytics Warehouse.
- Sign in to your service.
- In Oracle Fusion Analytics Warehouse Console, click Security under Service Administration.
- On the Security page, click the Groups tab, and then click New Group.
- In Create a New Group , enter a group name and description.
- Click Save.
Remove a Group
You can remove only the custom groups. When you remove a custom group, Oracle Fusion Analytics Warehouse removes the associated mappings of the application roles.
- Sign in to your service.
- In Oracle Fusion Analytics Warehouse Console, click Security under Service Administration.
- On the Security page, click the Groups tab.
- In the Groups region, search for a group and select it or select a group from the displayed list of groups.
- Click Remove Group.
Add Application Roles to a Group
As a security administrator, you can map the application roles available for Oracle Fusion Analytics Warehouse with the predefined and custom groups. This enables the groups to inherit the security setup at each application role level.
Copy Application Roles to a Group
As a security administrator, you can copy the application roles available from an existing group to another group.
- Sign in to your service.
- In Oracle Fusion Analytics Warehouse Console, click Security under Service Administration.
- On the Security page, click the Groups tab.
- In the Groups list, select the group to which you want to apply the application roles
- On the Groups tab, click Copy Role Mappings.
- In Copy Role Mappings From Another Group, search for a group that you want to copy roles from.
- Click the roles in the Copy Roles area to select or deselect them, and then click Copy.
- Click Save.
Remove Application Roles from a Group
You can remove capabilities inherited by a group from the application roles mapped to it.
- Sign in to your service.
- In Oracle Fusion Analytics Warehouse Console, click Security under Service Administration.
- On the Security page, under the Groups tab, select a group from the displayed list of groups or search for a group.
- In the group details region, click the Application Roles tab.
- Select one or more roles from the displayed list or search for application roles and select the applicable role.
- Click Remove Mapping.
- In Remove Role Mapping, click Remove Mapping.
Create an Application Role While Mapping
While mapping application roles to a group, if you need an application role that isn’t available in Oracle Fusion Analytics Warehouse, then you can create an application role.
- Sign in to your service.
- In Oracle Fusion Analytics Warehouse Console, click Security under Service Administration.
- On the Security page, under the Groups tab, select a group from the displayed list of groups or search for a group.
- In the group details region, click the Application Roles tab, and then click New Application Role.
- In Create a New Application Role , enter the application role name and specify the role type as data or duty.
- Click Save.
Assign Users to a Group
When you assign users to a group, you create user memberships for the group. You can assign one or more users to one or more groups.
- Sign in to your service.
- In Oracle Fusion Analytics Warehouse Console, click Security under Service Administration.
- On the Security page, click the Groups tab.
- Search for a group or select from the list of groups displayed under the Groups tab.
- Click Assign Users.
- In Assign Users, search for a user or select from the list of users displayed in this dialog.
- Select the check box for one or more users and click Assign.
Upload and Download User Group Mappings
You can download user group mapping template files to help you set up user group mappings, and then upload the files to your environment.
You can download "Sample" or "Current" files. Sample provides a csv file with relevant headers to help familiarize you with the types of data you can expect. Current provides a list of current data assignments you can download to your test or production environments. Regardless of the file you download, you need to populate the USERNAME and GROUPNAME columns. Use the Operation column to make bulk changes to the user group mappings. Don't change any of the header names in the downloaded files. When you're done updating the files, you can upload them to your environment.
Remove Users from a Group
You can remove one or more users from a group.
Copy User Mappings to a Group
As a security administrator, you can copy the users mapped to an existing group to a custom group to quickly add users to the new custom group.
- Sign in to your service.
- In Oracle Fusion Analytics Warehouse Console, click Security under Service Administration.
- On the Security page, click the Groups tab.
- In the Groups list, search for a group or select the group to which you want to copy the users.
- On the Groups tab, click Copy User Mappings.
- In Copy User Mappings From Another Group, search for a group that you want to copy users from.
- Under Copy Users, verify all the users who'll be copied to the custom group, and then click Copy.
- Click Save.
Enable Easy Data Access to People Leaders
As a security administrator, you can provide data access to people leaders such as line managers. This access enables line managers to create indepth analytics that influence and guide finance and human resource related decisions.