Manage Users

Create Users

Users for Oracle Fusion Data Intelligence must exist in the Oracle Identity Cloud Service instance associated with your Oracle Fusion Data Intelligence instance.

You create users in the Oracle Identity Cloud Service instance in the following ways:
  • Synchronize users from your Oracle Fusion Cloud Applications instance to the Oracle Identity Cloud Service instance.
  • Manually create users in the Oracle Identity Cloud Service instance.

Synchronize Users from Your Oracle Fusion Cloud Applications Instance

Synchronize users from your Oracle Fusion Cloud Applications instance to your Oracle Fusion Data Intelligence instance.

Create Users in Oracle Identity Cloud Service

Create users in the Oracle Identity Cloud Service instance associated with your Oracle Fusion Data Intelligence instance.

See Create User Accounts in Administering Oracle Identity Cloud Service.

License the Users to Access Oracle Fusion Data Intelligence

You must assign at least one system group to users to enable them to perform relevant tasks in Oracle Fusion Data Intelligence. System groups provide a set of privileges to perform tasks in Oracle Fusion Data Intelligence.

Currently, new licensed users with predefined job-specific groups get the Author role by default.

Based on the entitlements and the number of licenses that you purchased, you need to assign the users to either the HCM or ERP Licensed Author and HCM or ERP Licensed Consumer system groups. Additionally, if the users need to perform administrative tasks, you must assign those respective users to the administration-related groups.

See System Groups.

  1. Sign in to your service.
  2. In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
  3. On the Security page, click the Users tab, and then click Add User.
  4. In Add User, search for a user and select the user or select a user from the displayed list of users.
  5. Click Next.
  6. Select the check box for each of the licensed groups that you want to assign to the user and click Finish.

Assign Licensed Groups to Users

You can assign the Oracle Fusion Data Intelligence licensed groups (also known as system groups) to the Oracle Fusion Cloud Applications users when they're synchronized from your Oracle Fusion Cloud Applications instance to the Oracle Identity Cloud Service instance to provide these users immediate access to Oracle Fusion Data Intelligence.

When you enable the synchronization of Oracle Fusion Cloud Applications with the Oracle Identity Cloud Service instance associated with your Oracle Fusion Data Intelligence instance, all the Oracle Fusion Cloud Applications groups are visible on the Security page in Oracle Fusion Data Intelligence. You must map the Oracle Fusion Cloud Applications custom groups to the Oracle Fusion Data Intelligence licensed groups. Later when you synchronize the users from Oracle Fusion Cloud Applications to Oracle Identity Cloud Service, Oracle Fusion Data Intelligence selects those users, checks if the mapped Oracle Fusion Cloud Applications custom groups are assigned to those users, and then assigns the corresponding licensed groups to those users. From release Platform 23.R4 onwards, the licensed groups are mapped by default to the licensed application roles which provide the applicable privileges to the users that have been assigned these groups. See Licensed Roles.

You must ensure that the custom roles are available in Oracle Fusion Cloud Applications and that you've assigned these roles to the users in Oracle Fusion Cloud Applications.

  1. Sign in to your service.
  2. In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
  3. On the Security page, click the Groups tab, and then search for the FAW Licensed groups.
  4. Select a licensed group, for example FAW Licensed HCM Authors.
    You see the Users and Groups tabs for the selected licensed group in the right pane.
  5. Click the Groups tab under the licensed group.
  6. Click Add Mapping.
  7. In Add Source System Role Mapping, search for and select the Oracle Fusion Cloud Applications custom groups that you want to map to the licensed group, for example the FAW Licensed HCM Authors licensed group.
  8. Click Save.
  9. After mapping the Oracle Fusion Cloud Applications custom groups to the Oracle Fusion Data Intelligence author and consumer licensed groups, under the Groups tab, select the frequency of the synchronization of the Oracle Fusion Data Intelligence licensed groups with the new Oracle Fusion Cloud Applications users.
  10. Optional: Under the Groups tab, click Apply Changes Now.
    Oracle Fusion Data Intelligence adds the Oracle Fusion Data Intelligence licensed groups to the new Oracle Fusion Cloud Applications users.

Add Security Assignments to a User

Data security assignments apply data filters to display only the data corresponding to the security assignment values assigned to the users. You can assign a single user multiple security assignment values.

Before you add a security assignment to a user, you must ensure that:
  • The user has the appropriate group assigned to them.
  • The group has the appropriate data role to assign security values.
  1. Sign in to your service.
  2. In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
  3. On the Security page, search for a user or select from the list of users displayed under the Users tab.
    You see the security assignments granted to the user under the Security Assignments tab in the user details region.
  4. Click Grant Assignment.
  5. In Assign Security Assignments, select the security context for which you want to add data security assignments to the user. For example, ledgers or specific business units like AP business unit.
  6. From the list of security assignments that you see based on the security context that you selected, select the values that you want to add to the selected user.
    Note

    The Grant Assignment process appends the values that you selected to the existing assignments.

Remove Security Assignments Granted to a User

As a security administrator, you can remove security assignments that you had previously assigned.

  1. Sign in to your service.
  2. In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
  3. On the Security page, search for a user or select from the list of users displayed under the Users tab.
    You see the security assignments granted to the user under the Security Assignments tab in the user details region.
  4. Select the check box for one or more security assignments that you’d like to remove from the selected users and click Remove Assignment.
  5. In Remove Assignment, click Remove Assignment.

Copy Data Security Assignments

As a service or security administrator, you can copy data security assignments from one user to another user.

Copying bulk assignments could take some time to process. Monitor the Activity tab on the Security page.
  1. Sign in to your service.
  2. In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
  3. On the Security page, select a user from the users listed under the Users tab or search and select a user.
  4. Click Copy Assignments.
  5. In Copy Security Assignments From Another User:
    1. Under Copy From, search for and select a user to copy access from.
    2. Under Copy Security Access, you see the context-specific security assignments that would be copied.
  6. Click Copy.

View the Excluded Data Security Assignments

View the data security assignments that are excluded for a user to know which data the specific user can't access.

When a user is excluded from certain data security assignments, the excluded assignments are visible in the user details section on the Security page. As a service or security administrator, you can set up exclusion rules to exclude certain data security assignments from a user. You can modify the exclusion rules to remove the excluded assignments for a user. See Set Exclusion Rules for Security Assignments.
  1. Sign in to your service.
  2. In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
  3. On the Security page, select a user from the users listed under the Users tab or search and select a user.
  4. Click Excluded Assignments.