Manage Groups

Map application roles to groups, and add users to groups. This enables users to access the applicable objects and data in Oracle Fusion Data Intelligence and perform various tasks.

If you've set up synchronization of Oracle Fusion Cloud Applications with Oracle Identity Cloud Service, then users, job roles, and group memberships in Oracle Fusion Cloud Applications are synchronized as users, groups, and group memberships respectively. If you reassign a user to a different group in Oracle Identity Cloud Service while synchronization with Oracle Fusion Cloud Applications is enabled, then the synchronization process resets or erases such assignments during its next run.

Tutorial icon LiveLabs Sprint

Add Application Roles to a Group

As a security administrator, you can map the application roles available for Oracle Fusion Data Intelligence with the predefined and custom groups. This enables the groups to inherit the security setup at each application role level.

  1. Sign in to your service.
  2. In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
  3. On the Security page, click the Groups tab.
  4. In the Groups region, search for a group and select it or select a group from the displayed list of groups.
  5. In the group details region, click the Application Roles tab, and then click Add Mapping.
  6. In Add Application Role Mappings, search for an application role and select it or select from the displayed list of application roles.
    You can filter the display to view only the data or duty roles or view both role types.
  7. Click Save.

Copy Application Roles to a Group

As a security administrator, you can copy the application roles available from an existing group to another group.

  1. Sign in to your service.
  2. In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
  3. On the Security page, click the Groups tab.
  4. In the Groups list, select the group to which you want to apply the application roles
  5. On the Groups tab, click Copy Role Mappings.
  6. In Copy Role Mappings From Another Group, search for a group that you want to copy roles from.
  7. Click the roles in the Copy Roles area to select or deselect them, and then click Copy.
  8. Click Save.

Remove Application Roles from a Group

You can remove capabilities inherited by a group from the application roles mapped to it.

  1. Sign in to your service.
  2. In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
  3. On the Security page, under the Groups tab, select a group from the displayed list of groups or search for a group.
  4. In the group details region, click the Application Roles tab.
  5. Select one or more roles from the displayed list or search for application roles and select the applicable role.
  6. Click Remove Mapping.
  7. In Remove Role Mapping, click Remove Mapping.

Create an Application Role While Mapping

While mapping application roles to a group, if you need an application role that isn’t available in Oracle Fusion Data Intelligence, then you can create an application role.

The new role is mapped onto the specific group. You can map the new application role to other groups too. See Add Application Roles to a Group.
  1. Sign in to your service.
  2. In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
  3. On the Security page, under the Groups tab, select a group from the displayed list of groups or search for a group.
  4. In the group details region, click the Application Roles tab, and then click New Application Role.
  5. In Create a New Application Role , enter the application role name and specify the role type as data or duty.
  6. Click Save.

Enable Easy Data Access to People Leaders

As a security administrator, you can provide data access to people leaders such as line managers. This access enables line managers to create indepth analytics that influence and guide finance and human resource related decisions.

You can provide easy access by mapping the custom line manager groups from Oracle Fusion Cloud Applications to theprebuilt line manager group available in Oracle Fusion Data Intelligence. This mapping ensures that the prebuilt line manager group inherits the capabilities of the custom line manager groups.
  1. Sign in to your service.
  2. In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
  3. On the Security page, click the Groups tab, and then search for the prebuilt Line Manager group.

    Line Manager group

  4. Select the prebuilt Line Manager group and click the Custom Line Manager Groups tab.
  5. In the Custom Line Manager Groups tabbed section, click Map Groups.
  6. In the Map Custom Line Manager Groups dialog, select the custom groups and click Assign Group Mapping.

    Map custom line manager groups

  7. In the Custom Line Manager Groups tabbed section, for a selected custom line manager group, click the Access Level dropdown arrow and select the appropriate access level such as Author (edit capabilities) or Consumer (read-only).

    Set access level for custom line manager groups

  8. In the Custom Line Manager Groups tabbed section, click Apply Changes.