Migrate Role Memberships

To migrate role memberships, first, export them from the traditional cloud accounts. Then, modify the CSV file that contains the role memberships you exported so that you can import them into Oracle Identity Cloud Service. Next, import the role memberships into Oracle Identity Cloud Service.

You migrate role memberships individually. So, if you want to migrate 10 roles from a traditional cloud account to a cloud account with Identity Cloud Service, then you need to migrate one role at a time.

To see the mappings between roles in traditional cloud accounts and application roles in cloud accounts with Identity Cloud Service, refer to the table in Map Between Traditional Cloud Roles and Application Roles in Oracle Identity Cloud Service.

Export Role Memberships from Traditional Cloud Accounts

  1. Sign in to the Oracle Cloud Infrastructure Classic Console of the traditional cloud account that contains the role memberships that you want to export.

  2. Expand the Navigation Drawer Navigation menu icon in the top left corner, and then click Users.

  3. Navigate to the Roles tab.

  4. Select the role that contains memberships you want to export.

  5. Click Export. The role memberships will be exported into a CSV file.

  6. In the dialog box that appears, save the CSV file to your machine.

Modify the CSV File

  1. Locate the exact name of the application role to which you want the users to belong.

  2. Open the CSV file that you exported (because you want to modify it).

  3. Modify the CSV file as follows:

    1. Remove the First Name, Last Name, and Email column headings.

    2. Change the User Login column heading to Grantee Name.

    3. Add the Entitlement Value column heading. The value for all rows of this column should be the name of the application role you noted in step 1 of this procedure.

    4. Add the Grantee Type column heading. The value for all rows of this column should be User.

  4. Save your changes to the CSV file.

Import Role Memberships into Oracle Identity Cloud Service

  1. In the Applications page of the Identity Cloud Service console, click the application that has a role to which you want to assign users.

  2. Click Application Roles.

  3. Click Import.

  4. In the Import Application Roles dialog box, click Browse to locate and select your CSV file.

  5. Verify that the path and name of the CSV file you selected appear in the Select a file to import field.

  6. Click Import.

  7. After Oracle Identity Cloud Service evaluates all users that are to belong to the application role, review the job results.

    • If the job can be processed immediately, then a dialog box appears with the Job ID link for your import job. Click the link and review the details that appear on the Jobs page.

    • If the job can't be processed immediately, then a message appears with a Schedule ID in it. Copy that Schedule ID, and use it to search for the job on the Jobs page. The job will appear when processing completes. Go to step 8.

  8. In the Jobs page, locate the job that you want to view, and then click View Details.

    A table displays the user names, classification type (User), and statuses of the users that you imported and assigned to the application role in Oracle Identity Cloud Service.