Typical Workflow to Manage Users, Groups, Application Roles, and Data Access
Follow these tasks as a guide to manage users, groups, application roles, and data access.
| Task | Description | More Information | 
|---|---|---|
| Create users for Oracle Fusion Analytics Warehouse in Oracle Identity Cloud Service | Users for Oracle Fusion Analytics Warehouse must exist in the Oracle Identity Cloud Service instance associated with your Oracle Fusion Analytics Warehouse instance. You create users in the Oracle Identity Cloud Service instance in several ways. | See Create Users | 
| License the users to access Oracle Fusion Analytics Warehouse | An Oracle Fusion Analytics Warehouse user is an Oracle Fusion Analytics Warehouse licensed user. You license a user in Oracle Fusion Analytics Warehouse when you assign one of the Oracle Fusion Analytics Warehouse system groups to them. You must assign at least one system group to a user to enable them to perform relevant tasks in Oracle Fusion Analytics Warehouse. | See License the Users to Access Oracle Fusion Analytics Warehouse | 
| Create groups | As a security administrator, you can create custom groups to meet your business requirements. | See Create a Group | 
| Create application roles | Application roles consist of data and duty roles. As a security administrator, you can create custom duty and data roles using the Security pages to secure subject areas and data respectively. However, as a modeler, you configure these custom application roles using the Security Configuration section of the Semantic Model Extensions pages. | See Create an Application Role | 
| Associate groups and application roles | You must map the predefined and custom job-specific groups to the application roles (duty and data roles) to inherit the privileges and permissions to access the objects and data in Oracle Fusion Analytics Warehouse. | See Add Application Roles to a Group and Assign Groups to Application Roles | 
| Associate users and groups | You must associate users and groups as the groups assigned to the users provide them the access to Oracle Fusion Analytics Warehouse. | See Assign Groups to Users and Assign Users to a Group | 
| Add security assignments to a user | Access to data is granted at user level. Within a security context, users get assigned security assignments to filter their data access level. You can grant security assignments to the users for the predefined security contexts currently. For custom data access, the data filters are implicit through the custom data security framework. See Custom Security in Fusion Analytics Warehouse. | See Add Security Assignments to a User and Manage Users for a Data Security Assignment |