Activating a new Oracle Unity subscription

Overview

Once your organization has signed up for the Oracle Unity service, you will need to provide a point of contact (POC) to Oracle. This person will be assigned as the Oracle Cloud Account Administrator and the first Oracle Unity Instance Administrator.

Important: Are you the correct Oracle Cloud Account Administrator and Oracle Unity Instance Administrator? The person with this role will:
  • Plan and activate your subscription and create service instance(s).
  • Receive emails from Oracle Cloud Portal regarding the subscription, such as when new services have been purchased and when the new cloud account is ready.
  • Receive the welcome email after Oracle Unity instance has been provisioned. This email contains Oracle Unity Account Administrator login instructions.

If you are the correct person for this role, proceed to the Next steps section below.

To activate Oracle Unity, follow these steps:

If you have trouble completing these steps or have other issues with your Oracle Cloud account, review the Oracle Cloud troubleshooting tips.

Step 1: Activate your Oracle Public Cloud Services account

After the product is purchased, the POC should receive an email from Oracle Cloud services. This email has the subject line "Welcome to Oracle Cloud. The Provisioning Process Started." It provides instructions on activating your Oracle Public Cloud Service account.

Note: The Oracle Public Cloud Service account is not for Oracle Unity itself, but for the administrative portal for the Oracle Public Cloud Services to which you have subscribed. You will use the Oracle Cloud - My Services portal to activate Oracle Unity.

To activate your account: 

  1. Click the Activate button in the email that you received.

    An image of the account activation email

    • New Oracle customers: The Activate My Services! page automatically opens in a web browser window.
    • Existing Oracle customers: The Oracle Cloud - My Services Dashboard opens in a web browser window. Open the navigation menu and select Account.
    • An image of the navigation menu for the Oracle Cloud My Services Dashboard

      In the Activate tab, click Cloud services account setup. The Activate My Services! page opens in a web browser window.

      An image of the Oracle Cloud - My Services Dashboard

  2. In the Cloud Account Name - Create New Account field, enter the name you would like to use for your Oracle Public Cloud account. Oracle recommends that the account name indicate your organization and/or division name. (This name is used only in your Oracle Public Cloud Services account.)
  3. An image of the Activate My Services! page

  4. Optionally, edit the Administrator's First Name and Last Name, as needed.
  5. Click Activate Account. The Review Summary page informs you that you will receive a welcome email when the activation is completed. Click Close to dismiss the window.
  6. An image of the account review summary

Step 2: Log in to Cloud Portal using the My Services URL

After your Oracle Public Cloud Service account is activated, you will receive an email with the subject line "Setup Complete. You're ready to go.”

To log in to Oracle Cloud - My Services: 

  1. Open the "Setup Complete" email, scroll to the Access Details section, and then click the Oracle Cloud Console: Console URL link. The link opens the Oracle Cloud Account Sign In page.
  2. An image of the setup complete email

  3. To log in, enter the Username and Temporary Password provided in the email. The Set a new password for your user account page is displayed. (Identity Cloud Service manages user access to Oracle Public Cloud Services.)
  4. An image of the Oracle Cloud sign in page

  5. Following the instructions on the page, change the temporary password to your new password. When you enter the new password, the Password Criteria checklist icons change to green when you have entered a valid new password. The Reset Password button becomes available when the New Password and Confirm New Password fields match.
  6. An image of the password reset page

  7. Click Reset Password to continue.

After your password is changed successfully in the system, the Oracle Cloud - My Services Dashboard is displayed in your web browser.

Step 3: Create your service instance

When you create a Oracle Unity service instance, this begins the process of Oracle configuring your Oracle Unity account. When the new service is ready to use, you will receive an email with further details about how to log in to Oracle Unity.

To create your Oracle Unity service instance:

  1. From the Oracle Cloud - My Services Dashboard page, locate the Identity Domain drop-down list in the top-right corner. Select the option that shows your Oracle Public Cloud Service account name with the text "(classic)" after it. For example, if the options shown are "examplecom" and "examplecom (classic)", select "examplecom (classic)".
  2. Click the Create Instance tile. On the Create Instance dialog, locate Oracle Unity and then click Create.
  3. An image of the My Services dashboard

    An image of the Create Instance screen

  4. Complete the instance details:
    1. Name: enter a unique name for your instance.
      • The instance name identifies your service only within your “Oracle Cloud - My Services” identity domain on the Oracle Cloud Portal. For example, Oracle does not use it to name your Oracle Unity account.
      • The instance name must start with a letter, and it can have up to 25 lower case letters and numbers. You cannot use spaces, upper case letters, special characters, or non-English characters or numbers.
    2. Plan is pre-selected. You do not need to change this field.
    3. Hostname: The hostname you enter here will be used as the hostname for your Oracle Unity instance. We recommend you use your company/department name. It must start with a letter, and it can have up to 25 lower case letters and numbers. You cannot use spaces, upper case letters, special characters, or non-English characters or numbers.
    4. Industry: Use the drop-down list to select the industry that will be provisioned for your Oracle Unity instance. The industry you select determines the default data model that will be installed. You can select from the following: Base B2C (business-to-consumer), Base B2B (business-to-business), or Automotive.
  5. An image of the Instance Details page

  6. Optionally, change the Administrator Details, as needed. This should show your information. Unless you have already set up another Administrator user for your identity domain, we recommend that you do not change the information here.
    • The administrator details show the contact information for the person who will be both the service instance administrator in the Oracle Cloud - My Services portal and the first account administrator created in Oracle Unity.
    • Oracle Cloud sends the administrator details to Oracle Unity, and the administrator shown here is set up as the Oracle Unity account administrator. This person receives the “Welcome” email after your account is configured in Oracle Unity.
  7. Review your changes carefully, and then scroll to the bottom of the page and click Create. The Confirmation dialog is displayed.
  8. On the Confirmation dialog, click Create to submit your "create new instance" request to Oracle. You can also click Cancel to go back without submitting your request and verify that the details are correct. After you create the Oracle Unity service instance, the Service: Oracle Unity page is displayed. The Active status in the Additional Information section only indicates that the subscription is active. You will need to wait to receive an email from Oracle notifying you the new instance is ready and you can log in. When the new instance is ready to be logged in, you will see an Active status in the Service Environments section.
  9. An image of the Confirmation dialog

    An image of the Overview page

    An image of the Overview page

  10. Log out of Oracle Cloud - My Services: Click the user menu, and then choose Sign Out.

Step 4: Log in to the application

When you receive the notification email that the new instance is ready to use, you will be able to review your Cloud account name, username, and temporary password. Follow the instructions in the email.

An image of the final welcome email

 

Step 5: Update Instance admin credentials for syncing users

You will now need to update your Instance admin credentials for syncing users from Oracle Identity Cloud Service (IDCS) to Oracle Unity. If the instance admin credentials change or reset, then you will need to complete these steps again. This is because any user management changes in IDCS will not be synced to Oracle Unity if the password is invalid.

Note: These steps require a working knowledge of JSON and Postman.

Retrieve required parameters

To update the admin credentials for syncing users, you will need to retrieve the following parameters:

  • IDCS URL: Your IDCS URL will look like the following: https://idcs-[IDCS number].identity.oraclecloud.com/.
  • Client ID
  • Client Secret
  • Admin username
  • Admin password

Learn more about Retrieving Oracle Identity Cloud Service parameters.

You can now use a postman collection to update the admin username/password.

To use the postman collection:

  1. Save the following postman collection
  2. Import, then edit the postman collection.
    1. Select the Variables tab.
    2. Update the Host, Client ID, Client Secret, admin username, admin password.
  3. Run the first request to get the access token.
  4. Run the second request to update the admin credentials.
  5. Optionally, you can follow the steps to test your connection to confirm your credentials were successfully updated.
    • If the connection was successful, try creating or updating a Oracle Unity user in the Oracle Identity Cloud Service portal, refreshing the Admin page in Oracle Unity, and checking that the user is provisioned.
    • If the connection failed or if the user is not provisioned, contact Oracle Support.

Step 6: Sync users with a different user

After updating the admin credentials, you will need to use a different user other than the one used in the previous steps (a generic user) to sync users.

To sync users:

  1. Log in to IDCS and follow the steps for creating a new user. This will be a generic user for completing the following steps.
  2. Follow the steps for assigning applications to a user and assign Oracle Unity's IDCS App to the user. If all the steps for activating a new Oracle Unity subscription are successfully completed, then the user will be automatically synced to Oracle Unity.
  3. Log in to Oracle Unity with your user credentials (not the new generic user's credentials). Follow the steps for Editing user roles and assign the generic user the role of Instance admin.
  4. Complete these steps again: Step 5: Update Instance admin credentials for syncing users . This will update the IDCS App to use the credentials of the generic user when syncing users.

Step 7: Add group-specific password policy

The final step is to add a group-specific password policy. This allows you to update the default password policy for the user created in the previous steps.

  1. Log in to IDCS and follow the steps for creating a group.
  2. Follow the steps for assigning users to a group and assign the user created in the previous steps to this group.
  3. Follow the steps for setting the password policies for your identity domain.
  4. If you don't see Add for creating a policy, clear your browser cache or use an incognito/private browser window. If you still don't see Add, contact Oracle Support.

  5. Specify a priority and any necessary custom rules.
  6. Add the group to this password policy.
  7. When done, click Finish.
  8. Review the list of password policies and confirm the new one is listed.

Learn more

Data privacy and security features

Oracle Unity system requirements

Welcome to Oracle Unity

Using data in Oracle Unity

Segmentation

Analytics

sign in, how to sign in, account, user, login, log in, how to log in