High-Level Steps for Setting Up Security in Oracle BI Applications

Here are the high-level steps for setting up security in Oracle BI applications.

This content in this guide supplements Oracle Business Intelligence Security Guide, and contains additional security information that is specific to Oracle BI Applications running on Oracle Business Intelligence Enterprise Edition. In addition to the content in this guide, Oracle Business Intelligence Applications Functional Configuration Reference contains the security-related help topics that are included in the product UI.
  1. Familiarize yourself with the overview of security concepts, tools, and terminology, in particular, Duty Roles and how they control user privileges.
  2. During Oracle BI Applications installation, the provisioning process creates a set of default Enterprise Roles in the Oracle WebLogic Server LDAP that is embedded by default, and a set of default Duty Roles in the Policy Store.
  3. Create a user account in LDAP for each Oracle BI Applications Configuration Manager, Functional Setup Manager (FSM), and ODI User, and assign an appropriate Duty Role to each User.
    • A User for administration in FSM must be assigned to an Enterprise Role associated with the Duty Role 'BIA_ADMINISTRATOR_DUTY'.

    • A User for Load Plan administration in Oracle BI Applications Configuration Manager must be assigned to an Enterprise Role associated with the Duty Role 'BIA_LOAD_PLAN_DEVELOPER_DUTY'.

    • A User for Implementation Plan administration in FSM must be assigned to an Enterprise Role associated with the Duty Role 'BIA_IMPLEMENTATION_MANAGER_DUTY'.

  4. Create a user account in LDAP for every BI dashboard and report user (BI Users).
  5. Assign each BI User to the appropriate Enterprise Roles.
    To provision BI Users for the Offerings that you are deploying, use Functional Setup Manager (FSM) Tasks to set up security for your Offerings and Functional Areas. For information about using FSM Tasks to configure security, see Setting Up Security with Functional Setup Manager.
    For each Offering and Functional Area, the FSM Tasks for security typically specify:
    • Init Blocks that you need to enable.

    • Duty Roles that BI Users require.

    • Additional setup steps to perform (where required).

In addition to the information in the FSM Tasks for security, use Content Guide for Oracle BI Applications for a definitive list of default Duty Roles and Enterprise Roles required by BI Users (refer to Tech Note 1639479.1 on My Oracle Support). For more information about provisioning BI Users, see the topic titled “How to Define New Groups and Mappings for Users and BI Roles” in the Oracle BI Applications Functional Configuration Reference.