Configure Permissions for Metadata and Front-End Objects

Configure the permissions for metadata objects such as subject areas and its elements and front-end objects such as Oracle Analytics Cloud catalog items and key metrics with the prebuilt or the custom-created duty roles.

You secure the subject areas and their elements through "Configure Object Permissions", a prebuilt single step. See Configure Object Permissions.

Configure Permission for Oracle Analytics Cloud Objects

You can configure permissions for Oracle Analytics Cloud catalog objects such as folders, workbooks, datasets, data flows, sequences, connections, and machine learning models individually by adding the applicable duty role and assigning the appropriate level of access.

See Assign Shared Catalog Folder and Workbook Permissions.

Configure Permission for Key Metrics

Specific Administrator and Author licensed application roles are granted permissions to manage key metrics, including creating, updating, deleting, and managing their access levels. See Licensed Roles.

To consume a key metric, a user must have read access to the subject area and to any columns referenced in the key metric expression. You can define the access level by configuring object permissions in the Semantic Model Extensions security settings. See Configure Object Permissions.

Note:

Because the Restricted Author system role is included in the Author system role, Authors inherit its permissions. If Authors need less access to key metrics than Restricted Authors, create a custom application duty role instead of using the system role.

You can control access to all key metrics within a subject area by configuring the subject area's shared object access permissions. Assign key metric access permissions to an application duty role within a subject area to define who can access its key metrics and other associated shared objects, and what actions they can perform.

Note:

Updating access to a subject area's shared objects also affects all workbook shared objects, including key metrics, shared filter groups, shared data actions, and shared custom calculations.
  1. On the Oracle Fusion Data Intelligence Console, click Go to Home Page to open Oracle Analytics Cloud.
  2. On the Oracle Analytics Cloud home page, click inside the search bar and select Subject Area.
  3. Find the subject area that you want to add permissions to or update permissions for, click Actions, and then click Inspect.
  4. Click the Access tab to manage which roles have full control or write access to the subject area's key metrics and shared objects. To provide consumer-only access, remove the role from the Access list. Access is then granted according to the licensed application role and Semantic Model object access level.