Create a Confidential Application for Fusion Connections to Access the Hub API

A confidential application (configured as a client) is used by Fusion to call the Intelligent Advisor REST Hub API for interview information. This applies to Hubs using Oracle Identity Domain as identity provider.

Note that:

  • This needs to be done before creating the Fusion connection.

  • This must be a new confidential client. Clients cannot be re-used for different fusion connections and should not be used for any other purpose.

  • The user creating the confidential application must be an Admin in the IAM Domain that is being used as the identity provider for the Intelligent Advisor environment in which the Fusion connection is being created.

To create a new confidential application with rights to access the Hub API of the Intelligent Advisor site:

  1. In the Oracle Cloud Console, open the navigation menu and click Identity & Security. Under Identity, click Domains.

  2. Click the name of the identity domain that you want to work in. You might need to change the compartment to find the domain that you want. Then click Integrated applications.

  3. Click Add application.

  4. In the Add application window, click Confidential Application, and then click Launch workflow.

  5. On the Add application details page, enter a name for the confidential application. Click Next.

  6. On the Configure OAuth page:

    1. Click Configure this application as a client now.

    2. Under Authorization, for Allowed grant types select Client credentials.

    3. Under Token issuance policy, select Add resources.

    4. Under Resources, click Add scope.

    5. In the Add scope window, find the Intelligent Advisor site application and select the opa-hub/api scope only.

    6. Click Next.

  7. On the Configure policy page, click Finish. The application has been added in a deactivated state.

  8. Under General Information, copy the Client ID and Client secret as you will need these to create the Fusion connection in Intelligent Advisor Hub.

  9. At the top of the page, click Activate. Confirm the activation.