Access Control Overview

While overall access rights are controlled by predefined roles, Service Administrators can grant application roles to other users and groups by using Access Control. Users with the Service Administrator role can assign different application roles to other users to enable them to complete additional tasks. For example, they can assign a user the Approval Administrator role, which enables that user to perform approvals-related activities. Additionally, users with the Service Administrator role can create groups. Assigning roles to groups enables the Service Administrator user to grant roles to many users.

Use Access Control to perform these tasks:

Note:

Application roles can only enhance the access rights of users. None of the privileges granted by a predefined role are reduced by roles assigned at the application-level. For more information about application roles and what each role can perform, see Application Roles in the Oracle Help Center.

Tip:

When you assign application roles, best practice is to assign the lowest-level role that provides the required privileges.

To access the Access Control tool, click the Navigator icon Screenshot of the Navigator icon in NSPB and under Tools, select Access Control.

For details about the tasks you can complete within each tab in Access Control, see the following help topics from the Oracle Help Center:

For more information about using Access Control, see the Administering Access Control for Oracle Enterprise Performance Management Cloud guide in the Oracle Help Center.

General Notices