JavaScript is required to for searching.
Skip Navigation Links
Exit Print View
Oracle Identity Analytics User's Guide 11g Release 1
search filter icon
search icon

Document Information

Preface

1.  Oracle Identity Analytics Overview

2.  Using the Oracle Identity Analytics User Interface

3.  The Home Page

4.  My Settings

5.  My Requests

6.  Identity Warehouse

What Is the Identity Warehouse?

Understanding the Identity Warehouse User Interface

Business Structures

Users

Roles

Policies

Applications

Resources

Working With Users

To Create a User

To Rename a User

To Delete a User

Searching for a User

To Search for a User (Quick Search)

To Search for a User (Advanced Search)

Viewing User Details

To View User Accounts (Entitlements)

To View a User's Account Type

Working With Business Structures

To Delete a Business Structure

To Create a Business Structure Hierarchy

Associating Users With Roles and Business Structures

To Associate a User With a Role

To Associate a User With a Business Structure

Setting User Status

To Set User Status

Working With Policies

To Create a Policy

To Delete or Rename Policies

To Associate Policies With Resources

To Add Policies To Roles

To Associate Policy Owners With Policies

To Approve Policy Change Requests

To Manage Lifecycle of Policies

Working With Roles

To Search for a Role

Creating Roles

To Create Roles Manually

To Create Roles From Existing Roles

To Create Roles Based On an Existing User

To Rename, Modify, or Decommission (Delete) a Role

To Associate Roles With Business Units

To Associate Role Owners With Roles

To Create a Role Hierarchy

To Approve Role Change Requests

To Manage the Lifecycle of Roles

Setting the Segregation of Duties at the Role and Policy Levels

To Define Segregation of Duties at the Role Level

To Define Segregation of Duties at the Policy Level

7.  Identity Certification

8.  Identity Audit

9.  Reports

Understanding the Identity Warehouse User Interface

This section provides help using the Identity Warehouse portion of the user interface.

Business Structures

To open the Identity Warehouse - Business Structures page, choose Identity Warehouse > Business Structures from the main menu.

The Business Structures page has the following subtabs:

Subtab
Description
General
Displays basic information including type, division, and owner. Also provides information about the status of the business structure. Actions can only be taken on a business structure if it is in the active state.
Users
Displays all users who are part of the selected business structure.
Roles
Displays all the roles associated with the selected business structure.
Policies
Displays all the policies associated with the selected business structure.
Relationship Map
Displays the relationship hierarchy with other business structures.

Users

To open the Identity Warehouse - Users page, choose Identity Warehouse > Users from the main menu.

This page displays user name, first name, last name, and primary e-mail information. Quick search and advanced search are provided.

Roles

To open the Identity Warehouse - Roles page, choose Identity Warehouse > Roles from the main menu.

The Roles page is divided into the following sections:

Subtabs
Description
General
Displays basic information about the role, such as the role type.

A role can be one of the following types:

  • Provisioning role: Entitlement roles used in Identity Manager or other provisioning solutions.

  • Access Control role: Roles which capture policies for products that are integrated with Oracle Identity Analytics like Siteminder and Open SSO.

  • Organizational role: Roles which are job functional roles, such as Consultant, Analyst, Contractor, etc.

    This tab also displays the role start date, end date, and status.

    A role can exist in one of the following states:

  • Active: Applies to roles that have been approved by the role owner. Only active roles can be acted upon.

  • Inactive: Applies to old roles.

  • Composing: Applies to roles that are in the process of being created. Roles in a composing state have not yet sent by an administrator for approval.

  • Pending Approval: Applies to roles that have been sent by an administrator for approval.

  • Decommissioned: Applies to roles that no longer exist. All information regarding the role, however, is retained in Oracle Identity Analytics.

Business Structures
Displays the business structures associated with the role.
Policies
Displays the policies that make up the role.
Users
Displays the users who have the role assigned.
Exclusion Roles
Displays conflicting roles. This information is what defines Segregation of Duties at the role level.
Ownership
Displays the owner of the role.
Workflow
Displays the steps that make up the role's workflow.
Custom Properties
Displays the custom properties associated with the role.
Versions
Displays all versions of the role. This section allows you compare two versions and revert to an older version of the role.
History
Displays the role's history. Role history is divided into four sections: role membership history, owner history, policy history, and attribute history.

Policies

To open the Identity Warehouse - Policies page, choose Identity Warehouse > Policies from the main menu.

The policies page is divided into the following sections:

Subtabs
Description
General
Displays general information about the policy including status and risk level.

A policy can exist in one of the following states:

  • Active: Applies to policies that have been approved by the policy owner. Only active policies can be acted upon.

  • Inactive: Applies to old policies .

  • Composing: Applies to policies that are in the process of being created. Policies in a composing state have not yet sent by an administrator for approval.

  • Pending Approval: Applies to policies that have been sent by an administrator for approval.

  • Decommissioned: Applies to policies that no longer exist. Oracle Identity Analytics retains all information about the policy, however.

Business Structures
Displays the business structures associated with the policy.
Roles
Displays the roles associated with the policy.
Resources
Displays the resources that are part of the policy.
Exclusion Policies
Displays conflicting policies. This information is what defines Segregation of Duties at the policy level.
Ownership
Displays the policy owner.
Workflow
Displays the steps that make up the policy's workflow.
Version
Displays all versions of the policy.
Entitlements
Displays the resource attributes and values that make up the policy.

Applications

To open the Identity Warehouse - Applications page, choose Identity Warehouse > Applications from the main menu.

The Applications page lists the applications in Oracle Identity Analytics. When you click an application's name, you can view the following information:

Subtab
Description
General
Displays basic information about the application.
Users
Lists all the users that are associated with the application.
Ownership
Lists the assigned owner of the application.
Conditions
Lists the resource type, resource, attribute name and attribute value associated with the application.

To learn more about working with applications, see the Working With Applications section in the Oracle Identity Analytics 11gR1 Business Administrator's Guide.

Resources

To open the Identity Warehouse - Resources page, choose Identity Warehouse > Resources from the main menu.

The Resources page lists all the resources in Oracle Identity Analytics. When you click a resource, you can view the following information:

Subtab
Description
General
Displays basic information about the resource.
Data Management
Displays all the attributes and their corresponding attribute values.
Remediation
Displays remediation settings and information for the resource.

To learn more about working with resources, refer to the Working With Resources section in the Oracle Identity Analytics 11gR1 Business Administrator's Guide.