High-Level Steps for Setting Up Security in Oracle BI Applications

Here are the high-level steps for setting up security in Oracle BI Applications.

This content in this guide supplements Oracle Business Intelligence Security Guide, and contains additional security information that is specific to Oracle BI Applications running on Oracle BI EE. In addition to the content in this guide, Oracle Business Intelligence Applications Functional Configuration Reference contains the security-related help topics that are included in the product UI.
  1. Familiarize yourself with the overview of security concepts, tools, and terminology, in particular, Duty Roles and how they control user privileges.
  2. During Oracle BI Applications installation, the provisioning process creates a set of default Enterprise Roles in the Oracle WebLogic Server LDAP that is embedded by default, and a set of default Duty Roles in the Policy Store.
  3. Create a user account in LDAP for each Oracle BI Applications Configuration Manager (Configuration Manager), FSM, and ODI User, and assign an appropriate Duty Role to each User.
    • A User for administration in FSM must be assigned to an Enterprise Role associated with the Duty Role 'BIA_ADMINISTRATOR_DUTY'.

    • A User for Load Plan administration in Configuration Manager must be assigned to an Enterprise Role associated with the Duty Role 'BIA_LOAD_PLAN_DEVELOPER_DUTY'.

    • A User for Implementation Plan administration in FSM must be assigned to an Enterprise Role associated with the Duty Role 'BIA_IMPLEMENTATION_MANAGER_DUTY'.

  4. Create a user account in LDAP for every BI dashboard and report user (BI Users).
  5. Assign each BI User to the appropriate Enterprise Roles.
    To provision BI Users for the Offerings that you are deploying, use FSM tasks to set up security for your Offerings and Functional Areas. See Setting Up Security with Functional Setup Manager.
    For each Offering and Functional Area, the FSM Tasks for security typically specify:
    • Init Blocks that you need to enable.

    • Duty Roles that BI Users require.

    • Additional setup steps to perform (where required).

See How to Define New Groups and Mappings for Users and BI Roles in Oracle Business Intelligence Applications Functional Configuration Reference.