Manage Application Roles
Application roles consist of duty roles for objects security and data roles for data access. You can create, update, and delete application roles and add or remove groups mapped to an application role.
You can map the ready-to use or custom application roles to groups to define the permissions associated with the group. You can configure a custom application role using the Security Configuration section on the Semantic Model Extensions page. See Configure Data Security.
Create an Application Role
You can create custom duty and data roles to secure subject areas, front-end objects, and row-level data respectively when the predefined application roles don't meet your business needs.
- Sign in to your service.
- In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
- On the Security page, click the Application Roles tab and then click New Application Role.
- In Create a New Application Role, enter the application role name and specify the role type as data or duty.
- Click Save.
Delete an Application Role
You can delete the custom application roles. Upon deletion of the custom application roles, Oracle Fusion Data Intelligence deletes the mappings to the groups.
- Sign in to your service.
- In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
- On the Security page, click the Application Roles tab.
- Search for an application role or select from the displayed list of application roles.
- Click Remove Application Role.
- In the Delete Application Role? dialog, click Delete Role.
Assign Groups to Application Roles
Use these instructions to map application roles to groups.
- Sign in to your service.
- In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
- On the Security page, click the Application Roles tab.
- Search for an application role or select from the displayed list of application roles.
- In the application role details region, click Assign Groups.
- In Add Group Mappings, search for a group and select it or select from the displayed list of groups.
- Click Save.
Remove a Group Mapped to an Application Role
Use these instructions to remove a group mapped to an application role.
- Sign in to your service.
- In Oracle Fusion Data Intelligence Console, click Security under Service Administration.
- On the Security page, click the Application Roles tab.
- Search for an application role or select from the displayed list of application roles.
- In the application role details region, select the check box for a displayed group or search for a group and select it, and then click Remove Group.
- In the Remove Group Mapping? dialog, click Remove Group.