Manage Users
As a service or security administrator, you must ensure that you add users with applicable permissions to work with Oracle Fusion Data Intelligence.
Create Users
Users for Oracle Fusion Data Intelligence must exist in the Oracle Identity Cloud Service instance associated with your Oracle Fusion Data Intelligence instance.
- Synchronize users from your Oracle Fusion Cloud Applications instance to the Oracle Identity Cloud Service instance.
- Manually create users in the Oracle Identity Cloud Service instance.
License the Users to Access Oracle Fusion Data Intelligence
You must assign at least one system group to users to enable them to perform relevant tasks in Oracle Fusion Data Intelligence. System groups provide a set of privileges to perform tasks in Oracle Fusion Data Intelligence.
Currently, new licensed users with predefined job-specific groups get the Author role by default.
Based on the entitlements and the number of licenses that you purchased, you need to assign the users to either the HCM or ERP Licensed Author and HCM or ERP Licensed Consumer system groups. Additionally, if the users need to perform administrative tasks, you must assign those respective users to the administration-related groups.
See System Groups.
- Sign in to your service.
- In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
- On the Security page, click the Users tab, and then click Add User.
- In Add User, search for a user and select the user or select a user from the displayed list of users.
- Click Next.
- Select the check box for each of the licensed groups that you want to assign to the user and click Finish.
Assign Licensed Groups to Users
You can assign the Oracle Fusion Data Intelligence licensed groups (also known as system groups) to the Oracle Fusion Cloud Applications users when they're synchronized from your Oracle Fusion Cloud Applications instance to the Oracle Identity Cloud Service instance to provide these users immediate access to Oracle Fusion Data Intelligence.
When you enable the synchronization of Oracle Fusion Cloud Applications with the Oracle Identity Cloud Service instance associated with your Oracle Fusion Data Intelligence instance, all the Oracle Fusion Cloud Applications groups are visible on the Security page in Oracle Fusion Data Intelligence. You must map the Oracle Fusion Cloud Applications custom groups to the Oracle Fusion Data Intelligence licensed groups. Later when you synchronize the users from Oracle Fusion Cloud Applications to Oracle Identity Cloud Service, Oracle Fusion Data Intelligence selects those users, checks if the mapped Oracle Fusion Cloud Applications custom groups are assigned to those users, and then assigns the corresponding licensed groups to those users. From release Platform 23.R4 onwards, the licensed groups are mapped by default to the licensed application roles which provide the applicable privileges to the users that have been assigned these groups. See Licensed Roles.
You must ensure that the custom roles are available in Oracle Fusion Cloud Applications and that you've assigned these roles to the users in Oracle Fusion Cloud Applications.
Add Security Assignments to a User
Data security assignments apply data filters to display only the data corresponding to the security assignment values assigned to the users. You can assign a single user multiple security assignment values.
- The user has the appropriate group assigned to them.
- The group has the appropriate data role to assign security values.
Remove Security Assignments Granted to a User
As a security administrator, you can remove security assignments that you had previously assigned.
Copy Data Security Assignments
As a service or security administrator, you can copy data security assignments from one user to another user.
View the Excluded Data Security Assignments
View the data security assignments that are excluded for a user to know which data the specific user can't access.
- Sign in to your service.
- In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
- On the Security page, select a user from the users listed under the Users tab or search and select a user.
- Click Excluded Assignments.